RSA BSAFE Crypto-C Micro Edition versions from 4.0.0.0 before 4.0.5.4 and from 4.1.0 before 4.1.4, RSA BSAFE Micro Edition Suite versions from 4.0.0 before 4.0.13 and from 4.1.0 before 4.4 and RSA Crypto-C versions from 6.0.0 through 6.4.* are vulnerable to an out-of-bounds read vulnerability when processing DSA signature. A malicious remote user could potentially exploit this vulnerability to cause a crash in the library of the affected system.
History

Thu, 22 May 2025 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Dell bsafe Crypto-c
CPEs cpe:2.3:a:dell:bsafe_crypto-c:*:*:*:*:*:*:*:*
Vendors & Products Dell bsafe Crypto-c

Tue, 20 May 2025 16:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_0

{'score': 7.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Tue, 20 May 2025 16:15:00 +0000

Type Values Removed Values Added
Description RSA BSAFE Crypto-C Micro Edition versions prior to 4.0.5.4 (in 4.0.x) and 4.1.4 (in 4.1.x) and RSA BSAFE Micro Edition Suite versions prior to 4.0.13 (in 4.0.x) and prior to 4.4 (in 4.1.x, 4.2.x, 4.3.x) are vulnerable to a Buffer Over-read vulnerability when processing DSA signature. A malicious remote user could potentially exploit this vulnerability to cause a crash in the library of the affected system. RSA BSAFE Crypto-C Micro Edition versions from 4.0.0.0 before 4.0.5.4 and from 4.1.0 before 4.1.4, RSA BSAFE Micro Edition Suite versions from 4.0.0 before 4.0.13 and from 4.1.0 before 4.4 and RSA Crypto-C versions from 6.0.0 through 6.4.* are vulnerable to an out-of-bounds read vulnerability when processing DSA signature. A malicious remote user could potentially exploit this vulnerability to cause a crash in the library of the affected system.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2019-09-30T21:48:40.164927Z

Updated: 2025-05-20T16:04:26.733Z

Reserved: 2019-01-03T00:00:00

Link: CVE-2019-3728

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-09-30T22:15:10.373

Modified: 2025-05-22T16:19:15.813

Link: CVE-2019-3728

cve-icon Redhat

No data.