Microsoft Security Response Center guidance
CBL-Mariner Releases
Vendor-listed releases
- 3.7.11-2
- 3.8.3-3
- 4.19.0-2
Vulnerability intelligence
CVE-2024-12133 and is rated Medium severity with a CVSS score of 5.3. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
CBL-Mariner Releases
A flaw in libtasn1 causes inefficient handling of specific certificate data. When processing a large number of elements in a certificate, libtasn1 takes much longer than expected, which can slow down or even crash the system. This flaw allows an attacker to send a specially crafted certificate, causing a denial of service attack.