In GENERALNAMEcmp of v3_genn.c , there is a possible denial of service due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
{ "vanir_signatures": [ { "digest": { "length": 465.0, "function_hash": "74587422632080737889926093288202631381" }, "id": "PUB-A-175147055-3bacd093", "source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425", "deprecated": false, "signature_version": "v1", "target": { "file": "src/crypto/x509v3/v3_genn.c", "function": "GENERAL_NAME_get0_value" }, "signature_type": "Function" }, { "digest": { "length": 485.0, "function_hash": "242471709557477933555881258114296220686" }, "id": "PUB-A-175147055-8641b995", "source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425", "deprecated": false, "signature_version": "v1", "target": { "file": "src/crypto/x509v3/v3_genn.c", "function": "GENERAL_NAME_set0_value" }, "signature_type": "Function" }, { "digest": { "threshold": 0.9, "line_hashes": [ "155159385648801683048522595914904498798", "88795800835274131565611837464652901189", "258317050548196269243777713276142072514", "63041476668911548495541499377033622573", "229159713564321395315268064042591628192", "189628598236236606869529804373189314103", "291632930939832079360829858744920657044", "289153387886441732569534577778711719369", "42314536969478403398381619448685126158", "196222452983507865883633690107631820424", "150157281046013387967751353421752916511", "31246002437233696452797983429573723222", "115038361100580312804273003788329876734", "51469388328983288268248540273352420034", "223997634346460383081979560689242241671", "31716837282637722642335321761008386132", "157289808746835579783724090372789736542", "96713784428967144563586973062484997455", "53165317563798035179781057523757084782", "1936209794001599552413133405683587944", "40962394495289877603544797394946910639", "213915603083907192481595447133538529815", "38749220630555305145289125370753087814", "97644319981832907160823349333291371680", "123002030303253154622351391897540182648", "242670177419909176224699518917108681820" ] }, "id": "PUB-A-175147055-a200f367", "source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425", "deprecated": false, "signature_version": "v1", "target": { "file": "src/crypto/x509v3/v3_genn.c" }, "signature_type": "Line" }, { "digest": { "length": 746.0, "function_hash": "23736586777265084182782181527585542857" }, "id": "PUB-A-175147055-dd34dbb4", "source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425", "deprecated": false, "signature_version": "v1", "target": { "file": "src/crypto/x509v3/v3_genn.c", "function": "GENERAL_NAME_cmp" }, "signature_type": "Function" } ], "fixes": [ "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425" ], "spl": "2021-06-01", "severity": "Moderate", "types": [ "DoS" ] }