FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

libtasn1 -- stack-based buffer overflow in asn1_der_decoding

Affected packages
libtasn1 < 4.4

Details

VuXML ID 82595123-e8b8-11e4-a008-047d7b492d07
Discovery 2015-04-11
Entry 2015-04-22

Debian reports:

Hanno Boeck discovered a stack-based buffer overflow in the asn1_der_decoding function in Libtasn1, a library to manage ASN.1 structures. A remote attacker could take advantage of this flaw to cause an application using the Libtasn1 library to crash, or potentially to execute arbitrary code.

References

CVE Name CVE-2015-2806
URL https://www.debian.org/security/2015/dsa-3220.en.html