OSV-2020-1148

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libressl/OSV-2020-1148.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2020-1148
Published
2020-07-22T21:49:51.151710Z
Modified
2022-04-13T03:04:38.778921Z
Summary
Heap-buffer-overflow in asn1_item_ex_d2i
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=14217

Crash type: Heap-buffer-overflow READ 1
Crash state:
asn1_item_ex_d2i
ASN1_item_d2i
d2i_PrivateKey
References

Affected packages

OSS-Fuzz / libressl

Package

Name
libressl
Purl
pkg:generic/libressl

Affected ranges

Type
GIT
Repo
https://github.com/libressl-portable/portable.git
Events

Ecosystem specific

{
    "severity": "MEDIUM",
    "introduced_range": "unknown:4ea2a01a0d2cc889e95316f51c7a36f8f158df44"
}