CVE-2024-27355
published 2024-03-01CVE-2024-27355: An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. When processing the ASN.1 object identifier of a certificate…
PriorityP335high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.57%
43.3th percentile
An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. When processing the ASN.1 object identifier of a certificate, a sub identifier may be provided that leads to a denial of service (CPU consumption for decodeOID).
Affected
24 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | php-phpseclib | < php-phpseclib 2.0.42-1+deb12u2 (bookworm) | php-phpseclib 2.0.42-1+deb12u2 (bookworm) |
| debian | php-phpseclib3 | < php-phpseclib 2.0.42-1+deb12u2 (bookworm) | php-phpseclib 2.0.42-1+deb12u2 (bookworm) |
| debian | phpseclib | < php-phpseclib 2.0.42-1+deb12u2 (bookworm) | php-phpseclib 2.0.42-1+deb12u2 (bookworm) |
| phpseclib | phpseclib | — | — |
| phpseclib | phpseclib | — | — |
| phpseclib | phpseclib | — | — |
| phpseclib | phpseclib | >= 0 < 1.0.19-3+deb11u2 | 1.0.19-3+deb11u2 |
| phpseclib | phpseclib | >= 0 < 1.0.20-1+deb12u2 | 1.0.20-1+deb12u2 |
| phpseclib | phpseclib | >= 0 < 1.0.23-1 | 1.0.23-1 |
| phpseclib | phpseclib | >= 0 < 1.0.1-3ubuntu0.1+esm1 | 1.0.1-3ubuntu0.1+esm1 |
| phpseclib | phpseclib | >= 0 < 1.0.9-1ubuntu0.1~esm1 | 1.0.9-1ubuntu0.1~esm1 |
| phpseclib | phpseclib | >= 0 < 1.0.18-2ubuntu0.1~esm1 | 1.0.18-2ubuntu0.1~esm1 |
| phpseclib | phpseclib | >= 0 < 1.0.20-1ubuntu0.1~esm1 | 1.0.20-1ubuntu0.1~esm1 |
| phpseclib | phpseclib | >= 0.0.11 < 1.0.29 | 1.0.29 |
| phpseclib | phpseclib | >= 0.1.1 < 1.0.23 | 1.0.23 |
| phpseclib | phpseclib | >= 1.0.0 < 1.0.23 | 1.0.23 |
| phpseclib | phpseclib | >= 1.0.0 < 1.0.23 | 1.0.23 |
| phpseclib | phpseclib | >= 2.0.0 < 2.0.47 | 2.0.47 |
| phpseclib | phpseclib | >= 2.0.0 < 2.0.54 | 2.0.54 |
| phpseclib | phpseclib | >= 2.0.0 < 2.0.47 | 2.0.47 |
| phpseclib | phpseclib | >= 3.0.0 < 3.0.36 | 3.0.36 |
| phpseclib | phpseclib | >= 3.0.0 < 3.0.52 | 3.0.52 |
| phpseclib | phpseclib | >= 3.0.0 < 3.0.36 | 3.0.36 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
ghsa7.5HIGH
osv7.5HIGH
vendor_debian7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
phpseclib guardrails needed on OID length
ghsa·2026-05-08
CVE-2024-27355 [HIGH] CWE-400 phpseclib guardrails needed on OID length
phpseclib guardrails needed on OID length
### Impact
Any application using that loads untrusted ASN1 files (eg. X509 certificates, RSA PKCS8 private or public keys, etc).
### Patches
https://github.com/phpseclib/phpseclib/commit/e32531001b4d62c66c3d824ccef54ffad835eb59
### Workarounds
No.
### Resources
https://github.com/phpseclib/phpseclib/commit/e32531001b4d62c66c3d824ccef54ffad835eb59
https://www.usenix.org/system/files/conference/usenixsecurity25/sec25cycle1-prepub-599-shi-bing.pdf
GHSA
phpseclib has a CVE-2024-27355 mitigation bypass — OID amplification DoS in ASN1::decodeOID()
ghsa·2026-05-05·CVSS 7.5
CVE-2026-44167 [HIGH] CWE-400 phpseclib has a CVE-2024-27355 mitigation bypass — OID amplification DoS in ASN1::decodeOID()
phpseclib has a CVE-2024-27355 mitigation bypass — OID amplification DoS in ASN1::decodeOID()
### Impact
Anyone loading untrusted ASN1 files (eg. X509 certificates, RSA PKCS8 private or public keys, etc)
### Patches
https://github.com/phpseclib/phpseclib/commit/d53d2021bcb9f6a04d5d44ec99e6bbef219a71bc
### Workarounds
No.
### References
https://github.com/phpseclib/phpseclib/commit/d53d2021bcb9f6a04d5d44ec99e6bbef219a71bc
OSV
phpseclib vulnerabilities
osv·2025-04-02·CVSS 7.5
CVE-2021-30130 [HIGH] phpseclib vulnerabilities
phpseclib vulnerabilities
It was discovered that phpseclib did not correctly handle RSA PKCS#1
v1.5 signature verification. An attacker could possibly use this issue to
bypass authentication. This issue only affected Ubuntu 20.04 LTS.
(CVE-2021-30130)
It was discovered that phpseclib did not correctly handle certain
characters in certain TLS fields, which could lead to name confusion.
An attacker could possibly use this issue to bypass authentication.
(CVE-2023-52892)
It was discovered that phpseclib incorrectly limited the size of prime
numbers generated by isPrime. An attacker could possibly use this issue
to cause a denial of service. (CVE-2024-27354)
It was discovered that phpseclib did not correctly handle processing the
ASN.1 object identifier of a certificate. An attacker could
GHSA
phpseclib does not properly limit the ASN1 OID length
ghsa·2024-03-02
CVE-2024-27355 [HIGH] CWE-400 phpseclib does not properly limit the ASN1 OID length
phpseclib does not properly limit the ASN1 OID length
An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. When processing the ASN.1 object identifier of a certificate, a sub identifier may be provided that leads to a denial of service (CPU consumption for decodeOID).
OSV
phpseclib does not properly limit the ASN1 OID length
osv·2024-03-02
CVE-2024-27355 [HIGH] phpseclib does not properly limit the ASN1 OID length
phpseclib does not properly limit the ASN1 OID length
An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. When processing the ASN.1 object identifier of a certificate, a sub identifier may be provided that leads to a denial of service (CPU consumption for decodeOID).
OSV
CVE-2024-27355: An issue was discovered in phpseclib 1
osv·2024-03-01·CVSS 7.5
CVE-2024-27355 [HIGH] CVE-2024-27355: An issue was discovered in phpseclib 1
An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. When processing the ASN.1 object identifier of a certificate, a sub identifier may be provided that leads to a denial of service (CPU consumption for decodeOID).
Ubuntu
phpseclib vulnerabilities
vendor_ubuntu·2025-04-02·CVSS 7.5
CVE-2024-27354 [HIGH] phpseclib vulnerabilities
Title: phpseclib vulnerabilities
Summary: Several security issues were fixed in phpseclib.
It was discovered that phpseclib did not correctly handle RSA PKCS#1
v1.5 signature verification. An attacker could possibly use this issue to
bypass authentication. This issue only affected Ubuntu 20.04 LTS.
(CVE-2021-30130)
It was discovered that phpseclib did not correctly handle certain
characters in certain TLS fields, which could lead to name confusion.
An attacker could possibly use this issue to bypass authentication.
(CVE-2023-52892)
It was discovered that phpseclib incorrectly limited the size of prime
numbers generated by isPrime. An attacker could possibly use this issue
to cause a denial of service. (CVE-2024-27354)
It was discovered that phpseclib did not correctly handle processin
Debian
CVE-2024-27355: php-phpseclib - An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3...
vendor_debian·2024·CVSS 7.5
CVE-2024-27355 [HIGH] CVE-2024-27355: php-phpseclib - An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3...
An issue was discovered in phpseclib 1.x before 1.0.23, 2.x before 2.0.47, and 3.x before 3.0.36. When processing the ASN.1 object identifier of a certificate, a sub identifier may be provided that leads to a denial of service (CPU consumption for decodeOID).
Scope: local
bookworm: resolved (fixed in 2.0.42-1+deb12u2)
bullseye: resolved (fixed in 2.0.30-2+deb11u2)
forky: resolved (fixed in 2.0.47-1)
sid: resolved (fixed in 2.0.47-1)
trixie: resolved (fixed in 2.0.47-1)
No detection rules found.
No public exploits indexed.
https://gist.github.com/katzj/ee72f3c2a00590812b2ea3c0c8890e0bhttps://github.com/phpseclib/phpseclib/blob/978d081fe50ff92879c50ff143c62a143edb0117/phpseclib/File/ASN1.php#L1129https://lists.debian.org/debian-lts-announce/2024/03/msg00002.htmlhttps://lists.debian.org/debian-lts-announce/2024/03/msg00003.htmlhttps://gist.github.com/katzj/ee72f3c2a00590812b2ea3c0c8890e0bhttps://github.com/phpseclib/phpseclib/blob/978d081fe50ff92879c50ff143c62a143edb0117/phpseclib/File/ASN1.php#L1129https://lists.debian.org/debian-lts-announce/2024/03/msg00002.htmlhttps://lists.debian.org/debian-lts-announce/2024/03/msg00003.html
2024-03-01
Published