CVE-2016-5080: Objective Systems ASN1C

Critical severity, CVSS 9.8. EPSS: 10.1% chance of exploitation in the next 30 days.

Integer overflow in the rtxMemHeapAlloc function in asn1rt_a.lib in Objective Systems ASN1C for C/C++ before 7.0.2 allows context-dependent attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow), on a system running an application compiled by ASN1C, via crafted ASN.1 data.

Affected products

Published 2016-07-19. Last modified 2026-06-17.