You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Phpseclib needs guardrails on large binaryfield integers
Impact
Anyone loading untrusted ASN1 files (eg. X509 certificates, RSA PKCS8 private or public keys, etc)
Patches
phpseclib/phpseclib@964d781
Workarounds
No.
References
phpseclib/phpseclib@964d781
https://www.usenix.org/system/files/usenixsecurity25-shi-bing.pdf
References