Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-2053

The asn1_ber_decoder function in lib/asn1_decoder.c in the Linux kernel before 4.3 allows attackers to cause a denial of service (panic) via an ASN.1 BER file that lacks a public key, leading to mishandling by the public_key_verify_signature function in crypto/asymmetric_keys/public_key.c.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.0%
CVSS Severity
CVSS v3 Score 4.7
CVSS v2 Score 4.7
References
Products affected by CVE-2016-2053


Contact Us

Shodan ® - All rights reserved