Описание
The _gnutls_x509_oid2mac_algorithm function in lib/gnutls_algorithms.c in GnuTLS before 1.4.2 allows remote attackers to cause a denial of service (crash) via a crafted X.509 certificate that uses a hash algorithm that is not supported by GnuTLS, which triggers a NULL pointer dereference.
The _gnutls_x509_oid2mac_algorithm function in lib/gnutls_algorithms.c in GnuTLS before 1.4.2 allows remote attackers to cause a denial of service (crash) via a crafted X.509 certificate that uses a hash algorithm that is not supported by GnuTLS, which triggers a NULL pointer dereference.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-7239
- https://access.redhat.com/errata/RHBA-2012:0319
- https://access.redhat.com/security/cve/CVE-2006-7239
- https://bugzilla.redhat.com/show_bug.cgi?id=595229
- http://lists.gnupg.org/pipermail/gnutls-dev/2006-August/001190.html
- http://lists.gnupg.org/pipermail/gnutls-dev/2006-August/001192.html
- http://www.gnu.org/software/gnutls/security.html
EPSS
CVE ID
Связанные уязвимости
The _gnutls_x509_oid2mac_algorithm function in lib/gnutls_algorithms.c in GnuTLS before 1.4.2 allows remote attackers to cause a denial of service (crash) via a crafted X.509 certificate that uses a hash algorithm that is not supported by GnuTLS, which triggers a NULL pointer dereference.
The _gnutls_x509_oid2mac_algorithm function in lib/gnutls_algorithms.c in GnuTLS before 1.4.2 allows remote attackers to cause a denial of service (crash) via a crafted X.509 certificate that uses a hash algorithm that is not supported by GnuTLS, which triggers a NULL pointer dereference.
The _gnutls_x509_oid2mac_algorithm function in lib/gnutls_algorithms.c in GnuTLS before 1.4.2 allows remote attackers to cause a denial of service (crash) via a crafted X.509 certificate that uses a hash algorithm that is not supported by GnuTLS, which triggers a NULL pointer dereference.
The _gnutls_x509_oid2mac_algorithm function in lib/gnutls_algorithms.c ...
EPSS