← Vulnerability feed

Vulnerability record · CVE-2025-13151 · published 7 January 2026

CVE-2025-13151: Gnu libtasn1 out-of-bounds write vulnerability

Gnu · Libtasn1

Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.

7.5 CVSS 3.1 High EPSS 1.1% · top 34.5% CWE-787 · Out-of-bounds write
7.5CVSS 3.1 base score
1.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-13151 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-2806Canonical ubuntu linux memory buffer overflow vulnerabilityStack-based buffer overflow in asn1_der_decoding in libtasn1 before 4.4 allows remote attackers to have unspecified impact via unknown vectors.EPSS 7.7%9.1CVE-2021-46848Gnu libtasn1 vulnerabilityGNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der.EPSS 2.2%8.8CVE-2017-6891Gnu libtasn1 out-of-bounds write vulnerabilityTwo errors in the "asn1_find_node()" function (lib/parser_aux.c) within GnuTLS libtasn1 version 4.10 can be exploited to cause a stacked-based buffer…EPSS 5.6%7.5CVE-2018-6003Gnu libtasn1 vulnerabilityAn issue was discovered in the _asn1_decode_simple_ber function in decoding.c in GNU Libtasn1 before 4.13. Unlimited recursion in the BER decoder lea…EPSS 2.8%7.5CVE-2017-10790Gnu libtasn1 null pointer dereference vulnerabilityThe _asn1_check_identifier function in GNU Libtasn1 through 4.12 causes a NULL pointer dereference and crash when reading crafted input that triggers…EPSS 5.0%7.5CVE-2014-3468Gnutls vulnerabilityThe asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows con…EPSS 3.8%5.9CVE-2016-4008Canonical ubuntu linux vulnerabilityThe _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.8, when used without the ASN1_DECODE_FLAG_STRICT_DER flag, allows rem…EPSS 26%5.5CVE-2018-1000654Gnu libtasn1 vulnerabilityGNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 contains a DoS, specifically CPU usage will reach 100% when running asn1Paser ag…EPSS 2.0%

Source: NIST National Vulnerability Database (record CVE-2025-13151), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.