Security update for libtasn1
libtasn1 has been updated to fix three security issues: * asn1_get_bit_der() could have returned negative bit length (CVE-2014-3468) * Multiple boundary check issues could have allowed DoS (CVE-2014-3467) * Possible DoS by NULL pointer dereference in asn1_read_value_type (CVE-2014-3469) Security Issues: * CVE-2014-3468 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3468> * CVE-2014-3467 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3467> * CVE-2014-3469 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3469>
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
libtasn1 has been updated to fix three security issues: * asn1_get_bit_der() could have returned negative bit length (CVE-2014-3468) * Multiple boundary check issues could have allowed DoS (CVE-2014-3467) * Possible DoS by NULL pointer dereference in asn1_read_value_type (CVE-2014-3469) Security Issues: * CVE-2014-3468 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3468> * CVE-2014-3467 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3467> * CVE-2014-3469 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3469>
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/880735
- https://bugzilla.suse.com/880737
- https://bugzilla.suse.com/880738
- https://bugzilla.suse.com/924828
- https://www.suse.com/security/cve/CVE-2014-3467
- https://www.suse.com/security/cve/CVE-2014-3468
- https://www.suse.com/security/cve/CVE-2014-3469
- https://www.suse.com/security/cve/CVE-2015-2806
- https://www.suse.com/support/update/announcement/2015/suse-su-20150901-1/