CVE-2015-3622: Fedoraproject Fedora
Medium severity, CVSS 4.3. EPSS: 32.9% chance of exploitation in the next 30 days.
The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.5 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted certificate.
Affected products
- Fedoraproject Fedora: version 21 only
- GNU LIBTASN1: up to and including 4.4
- Opensuse Opensuse: version 13.2 only
Published 2015-05-12. Last modified 2026-06-17.