CVE-2017-10790: GNU LIBTASN1
High severity, CVSS 7.5. EPSS: 5% chance of exploitation in the next 30 days.
The _asn1_check_identifier function in GNU Libtasn1 through 4.12 causes a NULL pointer dereference and crash when reading crafted input that triggers assignment of a NULL value within an asn1_node structure. It may lead to a remote denial of service attack.
Affected products
- GNU LIBTASN1: up to and including 4.12
Published 2017-07-02. Last modified 2026-06-17.