Vulnerabilities > CVE-2020-23911 - NULL Pointer Dereference vulnerability in Asn1C Project Asn1C 0.9.28

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
asn1c-project
CWE-476

Summary

An issue was discovered in asn1c through v0.9.28. A NULL pointer dereference exists in the function _default_error_logger() located in asn1fix.c. It allows an attacker to cause Denial of Service.

Vulnerable Configurations

Part Description Count
Application
Asn1C_Project
1

Common Weakness Enumeration (CWE)