RULE(RULE ID:709998)

Rule General Information
Release Date: 2016-01-05
Rule Name: Gnutls Libtasn1 _asn1_extract_der_octet Memory Access Error Vulnerability -1 (CVE-2015-3622)
Severity:
CVE ID:
Rule Protection Details
Description: The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.5 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted certificate.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Solaris, Other Unix, FreeBSD, Linux
Reference: SecurityFocusBID:74419
SecurityTrackerID:1032246
Solutions
More advisories have been published on the website, please visit for more suggestions:
https://lists.gnu.org/archive/html/help-libtasn1/2015-04/msg00000.html