SUSE-SU-2015:0901-1
Dashboard / Vulnerabilities / SUSE-SU-2015:0901-1
SUSE-SU-2015:0901-1
Summary: Security update for libtasn1
Details: libtasn1 has been updated to fix three security issues: * asn1_get_bit_der() could have returned negative bit length (CVE-2014-3468) * Multiple boundary check issues could have allowed DoS (CVE-2014-3467) * Possible DoS by NULL pointer dereference in asn1_read_value_type (CVE-2014-3469) Security Issues: * CVE-2014-3468 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3468> * CVE-2014-3467 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3467> * CVE-2014-3469 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3469>
References: https://www.suse.com/support/update/announcement/2015/suse-su-20150901-1/, https://bugzilla.suse.com/880735, https://bugzilla.suse.com/880737, https://bugzilla.suse.com/880738, https://bugzilla.suse.com/924828, https://www.suse.com/security/cve/CVE-2014-3467, https://www.suse.com/security/cve/CVE-2014-3468, https://www.suse.com/security/cve/CVE-2014-3469, https://www.suse.com/security/cve/CVE-2015-2806
