The _asn1_check_identifier function in GNU Libtasn1 causes a NULL pointer dereference and crash when reading crafted input that triggers assignment of a NULL value within an asn1_node structure. It may lead to a denial of service attack.
Product bug:
https://bugzilla.redhat.com/show_bug.cgi?id=1464141
Created libtasn1 tracking bugs for this issue:
Affects: fedora-all [bug 1473195]
Created mingw-libtasn1 tracking bugs for this issue:
Affects: epel-7 [bug 1473196]
Affects: fedora-all [bug 1473194]