CVE-2020-29363
p11-kit: out-of-bounds write in p11_rpc_buffer_get_byte_array_value function in rpc-message.c
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An issue was discovered in p11-kit 0.23.6 through 0.23.21. A heap-based buffer overflow has been discovered in the RPC protocol used by p11-kit server/remote commands and the client library. When the remote entity supplies a serialized byte array in a CK_ATTRIBUTE, the receiving entity may not allocate sufficient length for the buffer to store the deserialized value.
Se detectó un problema en p11-kit versiones 0.23.6 hasta 0.23.21. Se ha detectado un desbordamiento de búfer en la región heap de la memoria en el protocolo RPC usado por los comandos remotos del servidor p11-kit y la biblioteca cliente. Cuando la entidad remota proporciona una matriz de bytes serializados en un CK_ATTRIBUTE, es posible que la entidad receptora no asigne una longitud suficiente para que el búfer almacene el valor deserializado
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-01-01 CVE Published
- 2020-11-27 CVE Reserved
- 2024-08-04 CVE Updated
- 2024-10-20 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-787: Out-of-bounds Write
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
https://github.com/p11-glue/p11-kit/releases | Release Notes | |
https://github.com/p11-glue/p11-kit/security/advisories/GHSA-5j67-fw89-fp6x | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.oracle.com/security-alerts/cpuapr2022.html | 2022-05-12 |
URL | Date | SRC |
---|---|---|
https://www.debian.org/security/2021/dsa-4822 | 2022-05-12 | |
https://access.redhat.com/security/cve/CVE-2020-29363 | 2021-05-18 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1903588 | 2021-05-18 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
P11-kit Project Search vendor "P11-kit Project" | P11-kit Search vendor "P11-kit Project" for product "P11-kit" | >= 0.23.6 < 0.23.22 Search vendor "P11-kit Project" for product "P11-kit" and version " >= 0.23.6 < 0.23.22" | - |
Affected
| ||||||
Debian Search vendor "Debian" | Debian Linux Search vendor "Debian" for product "Debian Linux" | 10.0 Search vendor "Debian" for product "Debian Linux" and version "10.0" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Communications Cloud Native Core Policy Search vendor "Oracle" for product "Communications Cloud Native Core Policy" | 1.14.0 Search vendor "Oracle" for product "Communications Cloud Native Core Policy" and version "1.14.0" | - |
Affected
|