Description
botan before 1.11.22 improperly validates certificate paths, which allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a certificate with a loop in the certificate chain.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-7723 | botan before 1.11.22 improperly validates certificate paths, which allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a certificate with a loop in the certificate chain. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T07:59:00.466Z
Reserved: 2015-10-14T00:00:00.000Z
Link: CVE-2015-7825
No data.
Status : Modified
Published: 2017-04-10T15:59:00.207
Modified: 2026-05-13T00:24:29.033
Link: CVE-2015-7825
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD