CVE-2017-6891

Two errors in the "asn1_find_node()" function (lib/parser_aux.c) within GnuTLS libtasn1 version 4.10 can be exploited to cause a stacked-based buffer overflow by tricking a user into processing a specially crafted assignments file via the e.g. asn1Coding utility.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnu:gnutls_libtasn1:4.10:*:*:*:*:*:*:*

Information

Published : 2017-05-22 19:29

Updated : 2021-06-29 15:15


NVD link : CVE-2017-6891

Mitre link : CVE-2017-6891


JSON object : View

Products Affected

gnu

  • gnutls_libtasn1
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer