Описание
ELSA-2013-0883: gnutls security update (IMPORTANT)
[2.8.5-10.2]
- fix CVE-2013-2116 - fix DoS regression in CVE-2013-1619 upstream patch (#966754)
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
gnutls
1.4.1-10.el5_9.2
gnutls-devel
1.4.1-10.el5_9.2
gnutls-utils
1.4.1-10.el5_9.2
Oracle Linux x86_64
gnutls
1.4.1-10.el5_9.2
gnutls-devel
1.4.1-10.el5_9.2
gnutls-utils
1.4.1-10.el5_9.2
Oracle Linux i386
gnutls
1.4.1-10.el5_9.2
gnutls-devel
1.4.1-10.el5_9.2
gnutls-utils
1.4.1-10.el5_9.2
Oracle Linux 6
Oracle Linux x86_64
gnutls
2.8.5-10.el6_4.2
gnutls-devel
2.8.5-10.el6_4.2
gnutls-guile
2.8.5-10.el6_4.2
gnutls-utils
2.8.5-10.el6_4.2
Oracle Linux i686
gnutls
2.8.5-10.el6_4.2
gnutls-devel
2.8.5-10.el6_4.2
gnutls-guile
2.8.5-10.el6_4.2
gnutls-utils
2.8.5-10.el6_4.2
Связанные CVE
Связанные уязвимости
The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.
The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.
The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.
The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in G ...
The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.