CVE-2021-46848

Source
https://nvd.nist.gov/vuln/detail/CVE-2021-46848
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-46848.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-46848
Downstream
Related
Published
2022-10-24T14:15:49Z
Modified
2025-10-15T13:30:34.425072Z
Severity
  • 9.1 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H CVSS Calculator
Summary
[none]
Details

GNU Libtasn1 before 4.19.0 has an ETYPEOK off-by-one array size check that affects asn1encodesimpleder.

References

Affected packages

Git / gitlab.com/gnutls/libtasn1

Affected ranges

Type
GIT
Repo
https://gitlab.com/gnutls/libtasn1
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

4.*

4.16.0

Other

gnutls_0_5_0
gnutls_0_5_1
libasn1_0_1_0
libtasn1-0-3-2
libtasn1_0_1_2
libtasn1_0_2_0
libtasn1_0_2_1
libtasn1_0_2_10
libtasn1_0_2_11
libtasn1_0_2_12
libtasn1_0_2_13
libtasn1_0_2_14
libtasn1_0_2_15
libtasn1_0_2_16
libtasn1_0_2_17
libtasn1_0_2_18
libtasn1_0_2_2
libtasn1_0_2_3
libtasn1_0_2_4
libtasn1_0_2_5
libtasn1_0_2_6
libtasn1_0_2_7
libtasn1_0_2_8
libtasn1_0_2_9
libtasn1_0_3_0
libtasn1_0_3_1
libtasn1_0_3_10
libtasn1_0_3_2
libtasn1_0_3_3
libtasn1_0_3_4
libtasn1_0_3_5
libtasn1_0_3_6
libtasn1_0_3_7
libtasn1_0_3_8
libtasn1_0_3_9
libtasn1_1_0
libtasn1_1_1
libtasn1_1_2
libtasn1_1_3
libtasn1_1_4
libtasn1_1_5
libtasn1_1_6
libtasn1_2_0
libtasn1_2_1
libtasn1_2_10
libtasn1_2_11
libtasn1_2_12
libtasn1_2_13
libtasn1_2_2
libtasn1_2_3
libtasn1_2_4
libtasn1_2_5
libtasn1_2_6
libtasn1_2_7
libtasn1_2_8
libtasn1_2_9
libtasn1_3_0
libtasn1_3_1
libtasn1_3_2
libtasn1_3_3
libtasn1_3_4
libtasn1_3_5
libtasn1_3_6
libtasn1_4_0
libtasn1_4_1
libtasn1_4_11
libtasn1_4_12
libtasn1_4_13
libtasn1_4_14
libtasn1_4_15_0
libtasn1_4_16_0
libtasn1_4_2
libtasn1_4_3
libtasn1_4_4
libtasn1_4_5
libtasn1_4_6
libtasn1_4_8
libtasn1_4_9
libtasn1_after_rename

libtasn1_4.*

libtasn1_4.7

v4.*

v4.16.0
v4.17.0
v4.18.0

Database specific

vanir_signatures

[
    {
        "deprecated": false,
        "id": "CVE-2021-46848-7660d0ca",
        "source": "https://gitlab.com/gnutls/libtasn1@44a700d2051a666235748970c2df047ff207aeb5",
        "signature_version": "v1",
        "target": {
            "file": "lib/int.h"
        },
        "signature_type": "Line",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "180900001376631709891623456653421985644",
                "86988387996833609858408414136069345084",
                "224585302465881495030456921739265879297",
                "137788088335804504219050604484537465829"
            ]
        }
    }
]