CVE Vulnerabilities

CVE-2012-1569

Published: Mar 26, 2012 | Modified: Jan 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
5 IMPORTANT
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

The asn1_get_length_der function in decoding.c in GNU Libtasn1 before 2.12, as used in GnuTLS before 3.0.16 and other products, does not properly handle certain large length values, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly have unspecified other impact via a crafted ASN.1 structure.

Affected Software

Name Vendor Start Version End Version
Gnutls Gnu * 3.0.15 (including)
Gnutls Gnu 1.0.16 (including) 1.0.16 (including)
Gnutls Gnu 1.0.17 (including) 1.0.17 (including)
Gnutls Gnu 1.0.18 (including) 1.0.18 (including)
Gnutls Gnu 1.0.19 (including) 1.0.19 (including)
Gnutls Gnu 1.0.20 (including) 1.0.20 (including)
Gnutls Gnu 1.0.21 (including) 1.0.21 (including)
Gnutls Gnu 1.0.22 (including) 1.0.22 (including)
Gnutls Gnu 1.0.23 (including) 1.0.23 (including)
Gnutls Gnu 1.0.24 (including) 1.0.24 (including)
Gnutls Gnu 1.0.25 (including) 1.0.25 (including)
Gnutls Gnu 1.1.13 (including) 1.1.13 (including)
Gnutls Gnu 1.1.14 (including) 1.1.14 (including)
Gnutls Gnu 1.1.15 (including) 1.1.15 (including)
Gnutls Gnu 1.1.16 (including) 1.1.16 (including)
Gnutls Gnu 1.1.17 (including) 1.1.17 (including)
Gnutls Gnu 1.1.18 (including) 1.1.18 (including)
Gnutls Gnu 1.1.19 (including) 1.1.19 (including)
Gnutls Gnu 1.1.20 (including) 1.1.20 (including)
Gnutls Gnu 1.1.21 (including) 1.1.21 (including)
Gnutls Gnu 1.1.22 (including) 1.1.22 (including)
Gnutls Gnu 1.1.23 (including) 1.1.23 (including)
Gnutls Gnu 1.2.0 (including) 1.2.0 (including)
Gnutls Gnu 1.2.1 (including) 1.2.1 (including)
Gnutls Gnu 1.2.2 (including) 1.2.2 (including)
Gnutls Gnu 1.2.3 (including) 1.2.3 (including)
Gnutls Gnu 1.2.4 (including) 1.2.4 (including)
Gnutls Gnu 1.2.5 (including) 1.2.5 (including)
Gnutls Gnu 1.2.6 (including) 1.2.6 (including)
Gnutls Gnu 1.2.7 (including) 1.2.7 (including)
Gnutls Gnu 1.2.8 (including) 1.2.8 (including)
Gnutls Gnu 1.2.8.1a1 (including) 1.2.8.1a1 (including)
Gnutls Gnu 1.2.9 (including) 1.2.9 (including)
Gnutls Gnu 1.2.10 (including) 1.2.10 (including)
Gnutls Gnu 1.2.11 (including) 1.2.11 (including)
Gnutls Gnu 1.3.0 (including) 1.3.0 (including)
Gnutls Gnu 1.3.1 (including) 1.3.1 (including)
Gnutls Gnu 1.3.2 (including) 1.3.2 (including)
Gnutls Gnu 1.3.3 (including) 1.3.3 (including)
Gnutls Gnu 1.3.4 (including) 1.3.4 (including)
Gnutls Gnu 1.3.5 (including) 1.3.5 (including)
Gnutls Gnu 1.4.0 (including) 1.4.0 (including)
Gnutls Gnu 1.4.1 (including) 1.4.1 (including)
Gnutls Gnu 1.4.2 (including) 1.4.2 (including)
Gnutls Gnu 1.4.3 (including) 1.4.3 (including)
Gnutls Gnu 1.4.4 (including) 1.4.4 (including)
Gnutls Gnu 1.4.5 (including) 1.4.5 (including)
Gnutls Gnu 1.5.0 (including) 1.5.0 (including)
Gnutls Gnu 1.5.1 (including) 1.5.1 (including)
Gnutls Gnu 1.5.2 (including) 1.5.2 (including)
Gnutls Gnu 1.5.3 (including) 1.5.3 (including)
Gnutls Gnu 1.5.4 (including) 1.5.4 (including)
Gnutls Gnu 1.5.5 (including) 1.5.5 (including)
Gnutls Gnu 1.6.0 (including) 1.6.0 (including)
Gnutls Gnu 1.6.1 (including) 1.6.1 (including)
Gnutls Gnu 1.6.2 (including) 1.6.2 (including)
Gnutls Gnu 1.6.3 (including) 1.6.3 (including)
Gnutls Gnu 1.7.0 (including) 1.7.0 (including)
Gnutls Gnu 1.7.1 (including) 1.7.1 (including)
Gnutls Gnu 1.7.2 (including) 1.7.2 (including)
Gnutls Gnu 1.7.3 (including) 1.7.3 (including)
Gnutls Gnu 1.7.4 (including) 1.7.4 (including)
Gnutls Gnu 1.7.5 (including) 1.7.5 (including)
Gnutls Gnu 1.7.6 (including) 1.7.6 (including)
Gnutls Gnu 1.7.7 (including) 1.7.7 (including)
Gnutls Gnu 1.7.8 (including) 1.7.8 (including)
Gnutls Gnu 1.7.9 (including) 1.7.9 (including)
Gnutls Gnu 1.7.10 (including) 1.7.10 (including)
Gnutls Gnu 1.7.11 (including) 1.7.11 (including)
Gnutls Gnu 1.7.12 (including) 1.7.12 (including)
Gnutls Gnu 1.7.13 (including) 1.7.13 (including)
Gnutls Gnu 1.7.14 (including) 1.7.14 (including)
Gnutls Gnu 1.7.15 (including) 1.7.15 (including)
Gnutls Gnu 1.7.16 (including) 1.7.16 (including)
Gnutls Gnu 1.7.17 (including) 1.7.17 (including)
Gnutls Gnu 1.7.18 (including) 1.7.18 (including)
Gnutls Gnu 1.7.19 (including) 1.7.19 (including)
Gnutls Gnu 2.0.0 (including) 2.0.0 (including)
Gnutls Gnu 2.0.1 (including) 2.0.1 (including)
Gnutls Gnu 2.0.2 (including) 2.0.2 (including)
Gnutls Gnu 2.0.3 (including) 2.0.3 (including)
Gnutls Gnu 2.0.4 (including) 2.0.4 (including)
Gnutls Gnu 2.1.0 (including) 2.1.0 (including)
Gnutls Gnu 2.1.1 (including) 2.1.1 (including)
Gnutls Gnu 2.1.2 (including) 2.1.2 (including)
Gnutls Gnu 2.1.3 (including) 2.1.3 (including)
Gnutls Gnu 2.1.4 (including) 2.1.4 (including)
Gnutls Gnu 2.1.5 (including) 2.1.5 (including)
Gnutls Gnu 2.1.6 (including) 2.1.6 (including)
Gnutls Gnu 2.1.7 (including) 2.1.7 (including)
Gnutls Gnu 2.1.8 (including) 2.1.8 (including)
Gnutls Gnu 2.2.0 (including) 2.2.0 (including)
Gnutls Gnu 2.2.1 (including) 2.2.1 (including)
Gnutls Gnu 2.2.2 (including) 2.2.2 (including)
Gnutls Gnu 2.2.3 (including) 2.2.3 (including)
Gnutls Gnu 2.2.4 (including) 2.2.4 (including)
Gnutls Gnu 2.2.5 (including) 2.2.5 (including)
Gnutls Gnu 2.3.0 (including) 2.3.0 (including)
Gnutls Gnu 2.3.1 (including) 2.3.1 (including)
Gnutls Gnu 2.3.2 (including) 2.3.2 (including)
Gnutls Gnu 2.3.3 (including) 2.3.3 (including)
Gnutls Gnu 2.3.4 (including) 2.3.4 (including)
Gnutls Gnu 2.3.5 (including) 2.3.5 (including)
Gnutls Gnu 2.3.6 (including) 2.3.6 (including)
Gnutls Gnu 2.3.7 (including) 2.3.7 (including)
Gnutls Gnu 2.3.8 (including) 2.3.8 (including)
Gnutls Gnu 2.3.9 (including) 2.3.9 (including)
Gnutls Gnu 2.3.10 (including) 2.3.10 (including)
Gnutls Gnu 2.3.11 (including) 2.3.11 (including)
Gnutls Gnu 2.4.0 (including) 2.4.0 (including)
Gnutls Gnu 2.4.1 (including) 2.4.1 (including)
Gnutls Gnu 2.4.2 (including) 2.4.2 (including)
Gnutls Gnu 2.4.3 (including) 2.4.3 (including)
Gnutls Gnu 2.5.0 (including) 2.5.0 (including)
Gnutls Gnu 2.6.0 (including) 2.6.0 (including)
Gnutls Gnu 2.6.1 (including) 2.6.1 (including)
Gnutls Gnu 2.6.2 (including) 2.6.2 (including)
Gnutls Gnu 2.6.3 (including) 2.6.3 (including)
Gnutls Gnu 2.6.4 (including) 2.6.4 (including)
Gnutls Gnu 2.6.5 (including) 2.6.5 (including)
Gnutls Gnu 2.6.6 (including) 2.6.6 (including)
Gnutls Gnu 2.7.4 (including) 2.7.4 (including)
Gnutls Gnu 2.8.0 (including) 2.8.0 (including)
Gnutls Gnu 2.8.1 (including) 2.8.1 (including)
Gnutls Gnu 2.8.2 (including) 2.8.2 (including)
Gnutls Gnu 2.8.3 (including) 2.8.3 (including)
Gnutls Gnu 2.8.4 (including) 2.8.4 (including)
Gnutls Gnu 2.8.5 (including) 2.8.5 (including)
Gnutls Gnu 2.8.6 (including) 2.8.6 (including)
Gnutls Gnu 2.10.0 (including) 2.10.0 (including)
Gnutls Gnu 2.10.1 (including) 2.10.1 (including)
Gnutls Gnu 2.10.2 (including) 2.10.2 (including)
Gnutls Gnu 2.10.3 (including) 2.10.3 (including)
Gnutls Gnu 2.10.4 (including) 2.10.4 (including)
Gnutls Gnu 2.10.5 (including) 2.10.5 (including)
Gnutls Gnu 2.12.0 (including) 2.12.0 (including)
Gnutls Gnu 2.12.1 (including) 2.12.1 (including)
Gnutls Gnu 2.12.2 (including) 2.12.2 (including)
Gnutls Gnu 2.12.3 (including) 2.12.3 (including)
Gnutls Gnu 2.12.4 (including) 2.12.4 (including)
Gnutls Gnu 2.12.5 (including) 2.12.5 (including)
Gnutls Gnu 2.12.6 (including) 2.12.6 (including)
Gnutls Gnu 2.12.6.1 (including) 2.12.6.1 (including)
Gnutls Gnu 2.12.7 (including) 2.12.7 (including)
Gnutls Gnu 2.12.8 (including) 2.12.8 (including)
Gnutls Gnu 2.12.9 (including) 2.12.9 (including)
Gnutls Gnu 2.12.10 (including) 2.12.10 (including)
Gnutls Gnu 2.12.11 (including) 2.12.11 (including)
Gnutls Gnu 2.12.12 (including) 2.12.12 (including)
Gnutls Gnu 2.12.13 (including) 2.12.13 (including)
Gnutls Gnu 2.12.14 (including) 2.12.14 (including)
Gnutls Gnu 3.0 (including) 3.0 (including)
Gnutls Gnu 3.0.0 (including) 3.0.0 (including)
Gnutls Gnu 3.0.1 (including) 3.0.1 (including)
Gnutls Gnu 3.0.2 (including) 3.0.2 (including)
Gnutls Gnu 3.0.3 (including) 3.0.3 (including)
Gnutls Gnu 3.0.4 (including) 3.0.4 (including)
Gnutls Gnu 3.0.5 (including) 3.0.5 (including)
Gnutls Gnu 3.0.6 (including) 3.0.6 (including)
Gnutls Gnu 3.0.7 (including) 3.0.7 (including)
Gnutls Gnu 3.0.8 (including) 3.0.8 (including)
Gnutls Gnu 3.0.9 (including) 3.0.9 (including)
Gnutls Gnu 3.0.10 (including) 3.0.10 (including)
Gnutls Gnu 3.0.11 (including) 3.0.11 (including)
Gnutls Gnu 3.0.12 (including) 3.0.12 (including)
Gnutls Gnu 3.0.13 (including) 3.0.13 (including)
Gnutls Gnu 3.0.14 (including) 3.0.14 (including)
Libtasn1 Gnu * 2.11 (including)
Libtasn1 Gnu 0.1.0 (including) 0.1.0 (including)
Libtasn1 Gnu 0.1.1 (including) 0.1.1 (including)
Libtasn1 Gnu 0.1.2 (including) 0.1.2 (including)
Libtasn1 Gnu 0.2.0 (including) 0.2.0 (including)
Libtasn1 Gnu 0.2.1 (including) 0.2.1 (including)
Libtasn1 Gnu 0.2.2 (including) 0.2.2 (including)
Libtasn1 Gnu 0.2.3 (including) 0.2.3 (including)
Libtasn1 Gnu 0.2.4 (including) 0.2.4 (including)
Libtasn1 Gnu 0.2.5 (including) 0.2.5 (including)
Libtasn1 Gnu 0.2.6 (including) 0.2.6 (including)
Libtasn1 Gnu 0.2.7 (including) 0.2.7 (including)
Libtasn1 Gnu 0.2.8 (including) 0.2.8 (including)
Libtasn1 Gnu 0.2.9 (including) 0.2.9 (including)
Libtasn1 Gnu 0.2.10 (including) 0.2.10 (including)
Libtasn1 Gnu 0.2.11 (including) 0.2.11 (including)
Libtasn1 Gnu 0.2.12 (including) 0.2.12 (including)
Libtasn1 Gnu 0.2.13 (including) 0.2.13 (including)
Libtasn1 Gnu 0.2.14 (including) 0.2.14 (including)
Libtasn1 Gnu 0.2.15 (including) 0.2.15 (including)
Libtasn1 Gnu 0.2.16 (including) 0.2.16 (including)
Libtasn1 Gnu 0.2.17 (including) 0.2.17 (including)
Libtasn1 Gnu 0.2.18 (including) 0.2.18 (including)
Libtasn1 Gnu 0.3.0 (including) 0.3.0 (including)
Libtasn1 Gnu 0.3.1 (including) 0.3.1 (including)
Libtasn1 Gnu 0.3.2 (including) 0.3.2 (including)
Libtasn1 Gnu 0.3.3 (including) 0.3.3 (including)
Libtasn1 Gnu 0.3.4 (including) 0.3.4 (including)
Libtasn1 Gnu 0.3.5 (including) 0.3.5 (including)
Libtasn1 Gnu 0.3.6 (including) 0.3.6 (including)
Libtasn1 Gnu 0.3.7 (including) 0.3.7 (including)
Libtasn1 Gnu 0.3.8 (including) 0.3.8 (including)
Libtasn1 Gnu 0.3.9 (including) 0.3.9 (including)
Libtasn1 Gnu 0.3.10 (including) 0.3.10 (including)
Libtasn1 Gnu 1.0 (including) 1.0 (including)
Libtasn1 Gnu 1.1 (including) 1.1 (including)
Libtasn1 Gnu 1.2 (including) 1.2 (including)
Libtasn1 Gnu 1.3 (including) 1.3 (including)
Libtasn1 Gnu 1.4 (including) 1.4 (including)
Libtasn1 Gnu 1.5 (including) 1.5 (including)
Libtasn1 Gnu 1.6 (including) 1.6 (including)
Libtasn1 Gnu 1.7 (including) 1.7 (including)
Libtasn1 Gnu 1.8 (including) 1.8 (including)
Libtasn1 Gnu 2.0 (including) 2.0 (including)
Libtasn1 Gnu 2.1 (including) 2.1 (including)
Libtasn1 Gnu 2.2 (including) 2.2 (including)
Libtasn1 Gnu 2.3 (including) 2.3 (including)
Libtasn1 Gnu 2.4 (including) 2.4 (including)
Libtasn1 Gnu 2.5 (including) 2.5 (including)
Libtasn1 Gnu 2.6 (including) 2.6 (including)
Libtasn1 Gnu 2.7 (including) 2.7 (including)
Libtasn1 Gnu 2.8 (including) 2.8 (including)
Libtasn1 Gnu 2.9 (including) 2.9 (including)
Libtasn1 Gnu 2.10 (including) 2.10 (including)
Libtasn1-3 Ubuntu hardy *
Libtasn1-3 Ubuntu lucid *
Libtasn1-3 Ubuntu maverick *
Libtasn1-3 Ubuntu natty *
Libtasn1-3 Ubuntu oneiric *
Libtasn1-3 Ubuntu precise *
Libtasn1-3 Ubuntu upstream *
Red Hat Enterprise Linux 5 RedHat gnutls-0:1.4.1-7.el5_8.2 *
Red Hat Enterprise Linux 6 RedHat libtasn1-0:2.3-3.el6_2.1 *
RHEV 3.X Hypervisor and Agents for RHEL-6 RedHat rhev-hypervisor6-0:6.2-20120423.1.el6_2 *

References