Back

HIGH

pyasn1 has a DoS vulnerability in decoder

Published Jan 16, 2026

Description

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (68)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner GitHub_M
Published Jan 16, 2026
Updated Sep 17, 2026
Reserved Jan 13, 2026
CISA Vulnrichment
Updated Jan 16, 2026
NVD
Status Modified
Modified Sep 9, 2026
Red Hat
Severity Important
Public date Jan 16, 2026
GHSA-63VM-454H-VHHQ