RSA BSAFE Crypto-C Micro Edition versions from 4.0.0.0 before 4.0.5.4 and from 4.1.0 before 4.1.4, RSA BSAFE Micro Edition Suite versions from 4.0.0 before 4.0.13 and from 4.1.0 before 4.4 and RSA Crypto-C versions from 6.0.0 through 6.4.* are vulnerable to an out-of-bounds read vulnerability when processing DSA signature. A malicious remote user could potentially exploit this vulnerability to cause a crash in the library of the affected system.
History

Tue, 04 Nov 2025 22:30:00 +0000


Mon, 03 Nov 2025 18:30:00 +0000


Thu, 22 May 2025 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Dell bsafe Crypto-c
CPEs cpe:2.3:a:dell:bsafe_crypto-c:*:*:*:*:*:*:*:*
Vendors & Products Dell bsafe Crypto-c

Tue, 20 May 2025 16:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_0

{'score': 7.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Tue, 20 May 2025 16:15:00 +0000

Type Values Removed Values Added
Description RSA BSAFE Crypto-C Micro Edition versions prior to 4.0.5.4 (in 4.0.x) and 4.1.4 (in 4.1.x) and RSA BSAFE Micro Edition Suite versions prior to 4.0.13 (in 4.0.x) and prior to 4.4 (in 4.1.x, 4.2.x, 4.3.x) are vulnerable to a Buffer Over-read vulnerability when processing DSA signature. A malicious remote user could potentially exploit this vulnerability to cause a crash in the library of the affected system. RSA BSAFE Crypto-C Micro Edition versions from 4.0.0.0 before 4.0.5.4 and from 4.1.0 before 4.1.4, RSA BSAFE Micro Edition Suite versions from 4.0.0 before 4.0.13 and from 4.1.0 before 4.4 and RSA Crypto-C versions from 6.0.0 through 6.4.* are vulnerable to an out-of-bounds read vulnerability when processing DSA signature. A malicious remote user could potentially exploit this vulnerability to cause a crash in the library of the affected system.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2019-09-30T21:48:40.164Z

Updated: 2025-11-04T21:08:09.233Z

Reserved: 2019-01-03T00:00:00.000Z

Link: CVE-2019-3728

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-09-30T22:15:10.373

Modified: 2025-11-04T22:15:52.877

Link: CVE-2019-3728

cve-icon Redhat

No data.