CVE-2025-13151
Unknown
Unknown - Not Provided
Stack-Based Buffer Overflow in libtasn1 v4.20.0 ASN.1 Parsing
Publication date: 2026-01-07
Last updated on: 2026-02-02
Assigner: CERT/CC
Description
Description
Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| gnutls | libtasn1 | 4.20.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-787 | The product writes data past the end, or before the beginning, of the intended buffer. |