Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:20612

Опубликовано: 02 июн. 2026
Источник: rocky
Оценка: Important

Описание

Important: gnutls security update

The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS.

Security Fix(es):

  • gnutls: Fix qsort comparator in DTLS reassembly (CVE-2026-42009)
  • gnutls: Fix crashing on an underflow with a DTLS datagram (CVE-2026-33845)
  • gnutls: Fix RSA-PSK identity truncation (CVE-2026-42010)
  • gnutls: Fix case-sensitivity of domain name comparison in name constraints (CVE-2026-3833)
  • gnutls: Fix intersecting empty name constraints (CVE-2026-42011)
  • gnutls: Denial of Service via heap buffer overflow in DTLS handshake fragment reassembly (CVE-2026-33846)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
gnutlsi6864.el9_8gnutls-3.8.10-4.el9_8.i686.rpm
gnutlsx86_644.el9_8gnutls-3.8.10-4.el9_8.x86_64.rpm

Показывать по

Связанные уязвимости

suse-cvrf
2 месяца назад

Security update for gnutls

rocky
около 2 месяцев назад

Important: gnutls security update

oracle-oval
около 1 месяца назад

ELSA-2026-50346: gnutls security fix update (IMPORTANT)

oracle-oval
14 дней назад

ELSA-2026-20613: gnutls security update (IMPORTANT)

oracle-oval
около 1 месяца назад

ELSA-2026-20612: gnutls security update (IMPORTANT)