Security Advisory

CVE-2024-27232

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-05 20:02:14
Last updated 2024-11-21 16:06:21
Assigner Google_Devices
State PUBLISHED

Description

In asn1_ec_pkey_parse of asn1_common.c, there is a possible OOB read due to a missing null check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.