CVE-2025-55398 – Mouse07410 Asn1c Integer Constraint Enforcement Vulnerability

The following table lists the changes that have been made to the
CVE-2025-55398 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Aug. 22, 2025

    Action Type Old Value New Value
    Added Description An issue was discovered in mouse07410 asn1c thru 0.9.29 (2025-03-20) – a fork of vlm asn1c. In UPER (Unaligned Packed Encoding Rules), asn1c-generated decoders fail to enforce INTEGER constraints when the bound is positive and exceeds 32 bits in length, potentially allowing incorrect or malicious input to be processed.
    Added Reference https://github.com/mouse07410/asn1c/issues/222
Share the Post:

Related Posts