Wind River Support Network

HomeDefectsLIN1021-13395
Acknowledged

LIN1021-13395 : Security Advisory - libtasn1 - CVE-2024-12133

Created: Feb 9, 2025    Updated: Mar 6, 2025
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

A flaw in libtasn1 causes inefficient handling of specific certificate data. When processing a large number of elements in a certificate, libtasn1 takes much longer than expected, which can slow down or even crash the system. This flaw allows an attacker to send a specially crafted certificate, causing a denial of service attack.

https://nvd.nist.gov/vuln/detail/CVE-2024-12133
Live chat
Online