UbuntuUpdates.org

Package "libtasn1-6"

Name: libtasn1-6

Description:

Manage ASN.1 structures (runtime)

Latest version: 3.4-3ubuntu0.6
Release: trusty (14.04)
Level: updates
Repository: main
Homepage: http://www.gnu.org/software/libtasn1/

Links


Download "libtasn1-6"


Other versions of "libtasn1-6" in Trusty

Repository Area Version
base main 3.4-3
security main 3.4-3ubuntu0.6

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 3.4-3ubuntu0.1 2014-07-22 19:06:41 UTC

  libtasn1-6 (3.4-3ubuntu0.1) trusty-security; urgency=medium

  * SECURITY UPDATE: denial of service and possible code execution via
    invalid ASN.1 data
    - debian/patches/CVE-2014-3467-3468.patch: properly calculate lengths
      in lib/decoding.c.
    - CVE-2014-3467
    - CVE-2014-3468
  * SECURITY UPDATE: denial of service via NULL value
    - debian/patches/CVE-2014-3469.patch: check for NULLs in lib/element.c.
    - CVE-2014-3469
 -- Marc Deslauriers <email address hidden> Fri, 18 Jul 2014 11:49:24 -0400

CVE-2014-3467 Multiple unspecified vulnerabilities in the DER decoder in GNU ...
CVE-2014-3468 The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not ...
CVE-2014-3469 The (1) asn1_read_value_type and (2) asn1_read_value functions in GNU ...



About   -   Send Feedback to @ubuntu_updates