>> GnuTLS libtasn1 DER Decoding Multiple Denial of Service Vulnerabilities
Title : GnuTLS libtasn1 DER Decoding Multiple Denial of Service Vulnerabilities VUPEN ID : VUPEN/ADV-2006-0496 CVE ID : CVE-2006-0645
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-02-10
Technical Description
Multiple vulnerabilities were identified in GnuTLS, which could be exploited by remote attackers to cause a denial of service. These flaws are due to errors within the DER decoding routines in "libtasn1" that fail to properly handle specially crafted requests, which could be exploited by remote attackers to crash a vulnerable application.