oss-sec mailing list archives

Re: Fw: GNU Libtasn1 4.4 released ( fixes stack overflow in asn1_der_decoding)


From: cve-assign () mitre org
Date: Mon, 30 Mar 2015 22:00:06 -0400 (EDT)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

* Noteworthy changes in release 4.4 (released 2015-03-29) [stable]
- Corrected a two-byte stack overflow in asn1_der_decoding.

Use CVE-2015-2806.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJVGf8tAAoJEKllVAevmvmsTB0H/1ES6DGPXElARSz+XrS99Bko
RKMOH6Fc85+M6oTt8vP8DpX+AJsK+X8ghHvntDvJgcVftJ3Uq6uEeOvZpy5zxDKj
6bAJUfv6eDLnXq8hLyuZuHUiqOEcz0wshRQDgBnRMYBwARZ5JQ6AstmI5+YOeOJn
VE+16h76nlsl8oEuy+Zdw2mTYrYwi5U4FzidI5EyZuMIHMUAPrazdx23WIql1Zzv
f/necE5LQ5dC73LGxY5MPSGvQvZc9+Bnyj2/utksNwIv4Lji0DpcBbFgGKgclpzU
RwHyJoA29TULBu8ODQaycyq0OpFIJO9eW794Xm3D3oNPaNFeqA452TqLzVFKV/I=
=5aXk
-----END PGP SIGNATURE-----


Current thread: