LibreSSL 2.9.1 through 3.2.1 has a heap-based buffer over-read in do_print_ex (called from asn1_item_print_ctx and ASN1_item_print).
2021-07-01T03:15:07.563
2024-11-21T04:39:49.620
Modified
CVSSv3.1: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:P/I:N/A:P
8.6
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | openbsd | libressl | ≤ 3.2.1 | Yes |
Operating System | linux | linux_kernel | - | No |