The BER decoder in Botan 0.10.x before 1.10.10 and 1.11.x before 1.11.19 allows remote attackers to cause a denial of service (application crash) via an empty BIT STRING in ASN.1 data.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2016-05-13T14:00:00

Updated: 2024-08-06T06:59:04.293Z

Reserved: 2015-08-04T00:00:00

Link: CVE-2015-5726

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2016-05-13T14:59:01.070

Modified: 2016-05-16T14:47:08.797

Link: CVE-2015-5726

cve-icon Redhat

No data.