CVE-2018-11058
—CVSS 3.1
9.8 critical
EPSS
4%p90
Published
()
Modified
Description
RSA BSAFE Micro Edition Suite, versions prior to 4.0.11 (in 4.0.x) and prior to 4.1.6 (in 4.1.x), and RSA BSAFE Crypto-C Micro Edition, version prior to 4.0.5.3 (in 4.0.x) contain a Buffer Over-Read vulnerability when parsing ASN.1 data. A remote attacker could use maliciously constructed ASN.1 data that would result in such issue.
- Vendors
- delloracle
- Products
- bsafe, bsafe crypto-c, application testing suite, communications analytics, communications ip service activator, core rdbms, enterprise manager ops center, goldengate application adapters, jd edwards enterpriseone tools, real user experience insight, retail predictive application server, security service
- Weakness
- CWE-125
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.