Vulnerabilities > Libtom > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-09-01 CVE-2023-36328 Integer Overflow or Wraparound vulnerability in multiple products
Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows attackers to execute arbitrary code and cause a denial of service (DoS).
network
low complexity
libtom fedoraproject CWE-190
critical
9.8
2019-10-09 CVE-2019-17362 Out-of-bounds Read vulnerability in multiple products
In LibTomCrypt through 1.18.2, the der_decode_utf8_string function (in der_decode_utf8_string.c) does not properly detect certain invalid UTF-8 sequences.
network
low complexity
libtom debian CWE-125
critical
9.1