In GENERALNAMEcmp of v3_genn.c , there is a possible denial of service due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
{
"spl": "2021-06-01",
"vanir_signatures": [
{
"id": "PUB-A-175147055-3bacd093",
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "src/crypto/x509v3/v3_genn.c",
"function": "GENERAL_NAME_get0_value"
},
"deprecated": false,
"digest": {
"length": 465.0,
"function_hash": "74587422632080737889926093288202631381"
},
"source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425"
},
{
"id": "PUB-A-175147055-8641b995",
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "src/crypto/x509v3/v3_genn.c",
"function": "GENERAL_NAME_set0_value"
},
"deprecated": false,
"digest": {
"length": 485.0,
"function_hash": "242471709557477933555881258114296220686"
},
"source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425"
},
{
"id": "PUB-A-175147055-a200f367",
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "src/crypto/x509v3/v3_genn.c"
},
"deprecated": false,
"digest": {
"line_hashes": [
"155159385648801683048522595914904498798",
"88795800835274131565611837464652901189",
"258317050548196269243777713276142072514",
"63041476668911548495541499377033622573",
"229159713564321395315268064042591628192",
"189628598236236606869529804373189314103",
"291632930939832079360829858744920657044",
"289153387886441732569534577778711719369",
"42314536969478403398381619448685126158",
"196222452983507865883633690107631820424",
"150157281046013387967751353421752916511",
"31246002437233696452797983429573723222",
"115038361100580312804273003788329876734",
"51469388328983288268248540273352420034",
"223997634346460383081979560689242241671",
"31716837282637722642335321761008386132",
"157289808746835579783724090372789736542",
"96713784428967144563586973062484997455",
"53165317563798035179781057523757084782",
"1936209794001599552413133405683587944",
"40962394495289877603544797394946910639",
"213915603083907192481595447133538529815",
"38749220630555305145289125370753087814",
"97644319981832907160823349333291371680",
"123002030303253154622351391897540182648",
"242670177419909176224699518917108681820"
],
"threshold": 0.9
},
"source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425"
},
{
"id": "PUB-A-175147055-dd34dbb4",
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "src/crypto/x509v3/v3_genn.c",
"function": "GENERAL_NAME_cmp"
},
"deprecated": false,
"digest": {
"length": 746.0,
"function_hash": "23736586777265084182782181527585542857"
},
"source": "https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425"
}
],
"types": [
"DoS"
],
"severity": "Moderate",
"fixes": [
"https://android.googlesource.com/platform/external/boringssl/+/ac675a6d208e08a031d5bf262fdcdbb533da8425"
]
}