First published: Thu Jul 01 2021(Updated: )
LibreSSL 2.9.1 through 3.2.1 has an out-of-bounds read in asn1_item_print_ctx (called from asn1_template_print_ctx).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Openbsd Libressl | >=2.9.1<=3.2.1 | |
Linux Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-25049 is a vulnerability found in LibreSSL versions 2.9.1 through 3.2.1 that allows for an out-of-bounds read in the asn1_item_print_ctx function.
CVE-2019-25049 affects OpenBSD Libressl versions 2.9.1 through 3.2.1.
CVE-2019-25049 has a severity rating of 7.1 (high).
To fix CVE-2019-25049, update to a version of LibreSSL that is not affected by the vulnerability (version 3.2.2 or higher).
You can find more information about CVE-2019-25049 on the following references: [link1], [link2], [link3].