Two errors in the "asn1_find_node()" function (lib/parser_aux.c) within GnuTLS libtasn1 version 4.10 can be exploited to cause a stacked-based buffer overflow by tricking a user into processing a specially crafted assignments file via the e.g. asn1Coding utility.
References
Information
Published : 2017-05-22 12:29
Updated : 2023-02-03 11:05
NVD link : CVE-2017-6891
Mitre link : CVE-2017-6891
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
debian
- debian_linux
gnu
- libtasn1
apache
- bookkeeper