ALT-PU-2018-1589-1
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-5726
The BER decoder in Botan 0.10.x before 1.10.10 and 1.11.x before 1.11.19 allows remote attackers to cause a denial of service (application crash) via an empty BIT STRING in ASN.1 data.
Modified: 2024-11-21
CVE-2015-5727
The BER decoder in Botan 1.10.x before 1.10.10 and 1.11.x before 1.11.19 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors, related to a length field.
Modified: 2024-11-21
CVE-2015-7827
Botan before 1.10.13 and 1.11.x before 1.11.22 make it easier for remote attackers to conduct million-message attacks by measuring time differences, related to decoding of PKCS#1 padding.
Modified: 2024-11-21
CVE-2016-2194
The ressol function in Botan before 1.10.11 and 1.11.x before 1.11.27 allows remote attackers to cause a denial of service (infinite loop) via unspecified input to the OS2ECP function, related to a composite modulus.
- http://botan.randombit.net/security.html
- http://botan.randombit.net/security.html
- [botan-devel] 20160201 Botan 1.11.28 and 1.10.11 released with security fixes
- [botan-devel] 20160201 Botan 1.11.28 and 1.10.11 released with security fixes
- [botan-devel] 20160203 Botan 1.10.12 released
- [botan-devel] 20160203 Botan 1.10.12 released
- DSA-3565
- DSA-3565
- GLSA-201612-38
- GLSA-201612-38
Modified: 2024-11-21
CVE-2016-2195
Integer overflow in the PointGFp constructor in Botan before 1.10.11 and 1.11.x before 1.11.27 allows remote attackers to overwrite memory and possibly execute arbitrary code via a crafted ECC point, which triggers a heap-based buffer overflow.
Modified: 2024-11-21
CVE-2016-9132
In Botan 1.8.0 through 1.11.33, when decoding BER data an integer overflow could occur, which would cause an incorrect length field to be computed. Some API callers may use the returned (incorrect and attacker controlled) length field in a way which later causes memory corruption or other failure.
Modified: 2024-11-21
CVE-2017-14737
A cryptographic cache-based side channel in the RSA implementation in Botan before 1.10.17, and 1.11.x and 2.x before 2.3.0, allows a local attacker to recover information about RSA secret keys, as demonstrated by CacheD. This occurs because an array is indexed with bits derived from a secret key.
- https://github.com/randombit/botan/issues/1222
- https://github.com/randombit/botan/issues/1222
- [debian-lts-announce] 20211108 [SECURITY] [DLA 2812-1] botan1.10 security update
- [debian-lts-announce] 20211108 [SECURITY] [DLA 2812-1] botan1.10 security update
- https://www.usenix.org/conference/usenixsecurity17/technical-sessions/presentation/wang-shuai
- https://www.usenix.org/conference/usenixsecurity17/technical-sessions/presentation/wang-shuai