← Back

CVE-2023-39914

nvd nist
Published: Sep 13, 2023Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

NLnet Labs' bcder library up to and including version 0.7.2 panics while decoding certain invalid input data rather than rejecting the data with an error. This can affect both the actual decoding stage as well as accessing content of types that utilized delayed decoding.

Affected (1)

Products: Nlnetlabs: Bcder
1 product
Bcder
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 0.7.3

References (2)

Source: sep@nlnetlabs.nl
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.