ALT-PU-2019-1542-1
Closed vulnerabilities
BDU:2020-00252
Уязвимость криптографической библиотеки GnuTLS, связанная с доступом к неинициализированному указателю, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-05201
Уязвимость криптографической библиотеки GnuTLS, связанная с повторным освобождением памяти, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2019-3829
A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in the certificate verification API. Any client or server application that verifies X.509 certificates with GnuTLS 3.5.8 or later is affected.
- openSUSE-SU-2019:1353
- openSUSE-SU-2019:1353
- RHSA-2019:3600
- RHSA-2019:3600
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3829
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3829
- https://gitlab.com/gnutls/gnutls/issues/694
- https://gitlab.com/gnutls/gnutls/issues/694
- FEDORA-2019-46df367eed
- FEDORA-2019-46df367eed
- FEDORA-2019-e8c1cf958f
- FEDORA-2019-e8c1cf958f
- FEDORA-2019-971ded6f90
- FEDORA-2019-971ded6f90
- GLSA-201904-14
- GLSA-201904-14
- https://security.netapp.com/advisory/ntap-20190619-0004/
- https://security.netapp.com/advisory/ntap-20190619-0004/
- USN-3999-1
- USN-3999-1
- https://www.gnutls.org/security-new.html#GNUTLS-SA-2019-03-27
- https://www.gnutls.org/security-new.html#GNUTLS-SA-2019-03-27
Modified: 2024-11-21
CVE-2019-3836
It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versions 3.6.3 or later which can be triggered by certain post-handshake messages.
- openSUSE-SU-2019:1353
- openSUSE-SU-2019:1353
- RHSA-2019:3600
- RHSA-2019:3600
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3836
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3836
- https://gitlab.com/gnutls/gnutls/issues/704
- https://gitlab.com/gnutls/gnutls/issues/704
- FEDORA-2019-46df367eed
- FEDORA-2019-46df367eed
- GLSA-201904-14
- GLSA-201904-14
- https://security.netapp.com/advisory/ntap-20190502-0005/
- https://security.netapp.com/advisory/ntap-20190502-0005/
- USN-3999-1
- USN-3999-1