CVE-2021-27343

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
06/04/2021
Last modified:
08/12/2022

Description

SerenityOS Unspecified is affected by: Buffer Overflow. The impact is: obtain sensitive information (context-dependent). The component is: /Userland/Libraries/LibCrypto/ASN1/DER.h Crypto::der_decode_sequence() function. The attack vector is: Parsing RSA Key ASN.1.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:serenityos:serenityos:-:*:*:*:*:*:*:*