First published: Tue Feb 18 2025(Updated: )
Bing Shi discovered that Libtasn1 inefficiently handled certificates. An attacker could possibly use this issue to increase resource utilization leading to a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libtasn1-6 | <4.19.0-3ubuntu0.24.10.1 | 4.19.0-3ubuntu0.24.10.1 |
Ubuntu | =24.10 | |
All of | ||
ubuntu/libtasn1-bin | <4.19.0-3ubuntu0.24.10.1 | 4.19.0-3ubuntu0.24.10.1 |
Ubuntu | =24.10 | |
All of | ||
ubuntu/libtasn1-6 | <4.18.0-4ubuntu0.1 | 4.18.0-4ubuntu0.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libtasn1-bin | <4.18.0-4ubuntu0.1 | 4.18.0-4ubuntu0.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libtasn1-6 | <4.16.0-2ubuntu0.1 | 4.16.0-2ubuntu0.1 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/libtasn1-bin | <4.16.0-2ubuntu0.1 | 4.16.0-2ubuntu0.1 |
Ubuntu | =20.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-7275-1 is categorized as a potential denial of service due to inefficient handling of certificates by Libtasn1.
To fix USN-7275-1, update Libtasn1 to version 4.19.0-3ubuntu0.24.10.1 or the appropriate version for your Ubuntu release.
USN-7275-1 affects Libtasn1 and Libtasn1-bin packages on Ubuntu 20.04, 22.04, and 24.10.
Yes, an attacker could exploit USN-7275-1 to increase resource utilization remotely, leading to potential denial of service.
There is no official workaround for USN-7275-1; the recommended action is to apply the security update.