>> RSA BSAFE Library ASN.1 Objects Processing Remote Denial of Service Vulnerability
Title : RSA BSAFE Library ASN.1 Objects Processing Remote Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2007-1908 CVE ID : CVE-2006-3894
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-05-22
Technical Description
A vulnerability has been identified in RSA BSAFE Crypto-C and Cert-C libraries, which could be exploited by remote attackers to cause a denial of service. This issue is caused by an error when parsing malformed Abstract Syntax Notation One (ASN.1) objects, which could be exploited by attackers to crash an application linked against a vulnerable library, creating a denial of service condition.