ALPINE-CVE-2018-6003

Source
https://security.alpinelinux.org/vuln/CVE-2018-6003
Import Source
https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2018-6003.json
JSON Data
https://api.osv.dev/v1/vulns/ALPINE-CVE-2018-6003
Upstream
Published
2018-01-22T20:29:00.493Z
Modified
2025-11-19T06:14:16.278191Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

An issue was discovered in the asn1decodesimpleber function in decoding.c in GNU Libtasn1 before 4.13. Unlimited recursion in the BER decoder leads to stack exhaustion and DoS.

References

Affected packages

Alpine:v3.10

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.11

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.12

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.13

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.14

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.15

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.16

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.17

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.18

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.19

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.20

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.21

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.22

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.4

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.8-r3

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.8-r1
4.8-r2

Alpine:v3.5

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.9-r3

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.9-r1
4.9-r2

Alpine:v3.6

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.10-r3

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.10-r2

Alpine:v3.7

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.12-r3

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.8

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2

Alpine:v3.9

libtasn1

Package

Name
libtasn1
Purl
pkg:apk/alpine/libtasn1?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13-r0

Affected versions

1.*

1.8-r0

2.*

2.0-r0
2.1-r0
2.2-r0
2.4-r0
2.5-r0
2.5-r1
2.6-r0
2.6-r1
2.6-r2
2.8-r0
2.8-r1
2.9-r0
2.9-r1
2.12-r0
2.13-r0
2.14-r0

3.*

3.1-r0
3.2-r0
3.3-r0
3.4-r0
3.6-r0

4.*

4.1-r0
4.2-r0
4.4-r0
4.5-r0
4.6-r0
4.7-r0
4.8-r0
4.9-r0
4.10-r0
4.10-r1
4.12-r0
4.12-r1
4.12-r2