Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-2116

Опубликовано: 29 мая 2013
Источник: redhat
CVSS2: 5

Описание

The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6mingw32-gnutlsNot affected
Red Hat Enterprise Linux 5gnutlsFixedRHSA-2013:088330.05.2013
Red Hat Enterprise Linux 6gnutlsFixedRHSA-2013:088330.05.2013
RHEV 3.X Hypervisor and Agents for RHEL-6rhev-hypervisor6FixedRHSA-2013:107616.07.2013

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=966754gnutls: out of bounds read in _gnutls_ciphertext2compressed (GNUTLS-SA-2013-2)

5 Medium

CVSS2

Связанные уязвимости

ubuntu
около 12 лет назад

The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.

nvd
около 12 лет назад

The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.

debian
около 12 лет назад

The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in G ...

github
около 3 лет назад

The _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in GnuTLS 2.12.23 allows remote attackers to cause a denial of service (buffer over-read and crash) via a crafted padding length. NOTE: this might be due to an incorrect fix for CVE-2013-0169.

oracle-oval
около 12 лет назад

ELSA-2013-0883: gnutls security update (IMPORTANT)

5 Medium

CVSS2