Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-6395

Опубликовано: 10 июл. 2025
Источник: debian
EPSS Низкий

Описание

A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite().

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gnutls28fixed3.8.9-3package

Примечания

  • https://lists.gnupg.org/pipermail/gnutls-help/2025-July/004883.html

  • https://gitlab.com/gnutls/gnutls/-/issues/1718

  • Fixed by: https://gitlab.com/gnutls/gnutls/-/commit/23135619773e6ec087ff2abc65405bd4d5676bad (3.8.10)

EPSS

Процентиль: 19%
0.0006
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
2 месяца назад

A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite().

CVSS3: 6.5
redhat
2 месяца назад

A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite().

CVSS3: 6.5
nvd
2 месяца назад

A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite().

CVSS3: 6.5
msrc
около 2 месяцев назад

Описание отсутствует

CVSS3: 6.5
github
2 месяца назад

A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite(). When it reads certain settings from a template file, it can allow an attacker to cause an out-of-bounds (OOB) NULL pointer write, resulting in memory corruption and a denial of service (DoS) that could crash the system.

EPSS

Процентиль: 19%
0.0006
Низкий