Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-7076

Опубликовано: 16 мая 2025
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2025-7076: gnutls security update (MODERATE)

[3.8.3-6]

  • Bump nettle dependency to 3.10.1 (RHEL-52740)

[3.8.3-5]

  • Backport the fix for CVE-2024-12243 (RHEL-78580)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

gnutls

3.8.3-6.el9

gnutls-c++

3.8.3-6.el9

gnutls-devel

3.8.3-6.el9

gnutls-dane

3.8.3-6.el9

gnutls-utils

3.8.3-6.el9

Oracle Linux x86_64

gnutls

3.8.3-6.el9

gnutls-c++

3.8.3-6.el9

gnutls-dane

3.8.3-6.el9

gnutls-devel

3.8.3-6.el9

gnutls-utils

3.8.3-6.el9

Связанные CVE

Связанные уязвимости

CVSS3: 5.3
ubuntu
6 месяцев назад

A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data processing. Due to an inefficient algorithm in libtasn1, decoding certain DER-encoded certificate data can take excessive time, leading to increased resource consumption. This flaw allows a remote attacker to send a specially crafted certificate, causing GnuTLS to become unresponsive or slow, resulting in a denial-of-service condition.

CVSS3: 5.3
redhat
6 месяцев назад

A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data processing. Due to an inefficient algorithm in libtasn1, decoding certain DER-encoded certificate data can take excessive time, leading to increased resource consumption. This flaw allows a remote attacker to send a specially crafted certificate, causing GnuTLS to become unresponsive or slow, resulting in a denial-of-service condition.

CVSS3: 5.3
nvd
6 месяцев назад

A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data processing. Due to an inefficient algorithm in libtasn1, decoding certain DER-encoded certificate data can take excessive time, leading to increased resource consumption. This flaw allows a remote attacker to send a specially crafted certificate, causing GnuTLS to become unresponsive or slow, resulting in a denial-of-service condition.

CVSS3: 5.3
msrc
5 месяцев назад

Описание отсутствует

CVSS3: 5.3
debian
6 месяцев назад

A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data pr ...