UbuntuUpdates.org

Package "libtasn1-6"

Name: libtasn1-6

Description:

Manage ASN.1 structures (runtime)

Latest version: 4.18.0-4ubuntu0.2
Release: jammy (22.04)
Level: security
Repository: main
Homepage: https://www.gnu.org/software/libtasn1/

Links


Download "libtasn1-6"


Other versions of "libtasn1-6" in Jammy

Repository Area Version
base universe 4.18.0-4build1
base main 4.18.0-4build1
security universe 4.18.0-4ubuntu0.2
updates main 4.18.0-4ubuntu0.2
updates universe 4.18.0-4ubuntu0.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 4.18.0-4ubuntu0.2 2026-01-12 16:09:21 UTC

  libtasn1-6 (4.18.0-4ubuntu0.2) jammy-security; urgency=medium

  * SECURITY UPDATE: ETYPE_OK off-by-one array size check
    - debian/patches/CVE-2021-46848.patch: fix size check in lib/int.h.
    - CVE-2021-46848
  * SECURITY UPDATE: Stack-based buffer overflow
    - debian/patches/CVE-2025-13151.patch: fix asn1_expand_octet_string
      buffer size in lib/decoding.c.
    - CVE-2025-13151

 -- Marc Deslauriers <email address hidden> Thu, 08 Jan 2026 12:27:15 -0500

Source diff to previous version
CVE-2021-46848 GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der.
CVE-2025-13151 Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn

Version: 4.18.0-4ubuntu0.1 2025-02-18 22:07:15 UTC

  libtasn1-6 (4.18.0-4ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Denial of service through inefficient algorithm.
    - CVE-2024-12133-x.patch: Add caching and optimize algorithms in
      lib/decoding.c, lib/element.c, lib/element.h, lib/int.h,
      lib/parser_aux.c, and lib/structure.c.
    - CVE-2024-12133

 -- Hlib Korzhynskyy <email address hidden> Tue, 11 Feb 2025 17:49:16 -0330

CVE-2024-12133 A flaw in libtasn1 causes inefficient handling of specific certificate data. When processing a large number of elements in a certificate, libtasn1 ta



About   -   Send Feedback to @ubuntu_updates