Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-8564

Опубликовано: 13 нояб. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3.x before 3.1.28, 3.2.x before 3.2.20, and 3.3.x before 3.3.10 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) Elliptic Curve Cryptography (ECC) certificate or (2) certificate signing requests (CSR), related to generating key IDs.

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

not-affected

code not present
lucid

not-affected

code not present
precise

not-affected

code not present
precise/esm

not-affected

code not present
trusty

not-affected

code not present

Показывать по

РелизСтатусПримечание
artful

released

3.3.8-3ubuntu2
bionic

released

3.3.8-3ubuntu2
cosmic

released

3.3.8-3ubuntu2
devel

released

3.3.8-3ubuntu2
disco

released

3.3.8-3ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
esm-infra/bionic

released

3.3.8-3ubuntu2
esm-infra/xenial

released

3.3.8-3ubuntu2
lucid

DNE

precise

ignored

end of life

Показывать по

EPSS

Процентиль: 73%
0.00812
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 11 лет назад

The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3.x before 3.1.28, 3.2.x before 3.2.20, and 3.3.x before 3.3.10 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) Elliptic Curve Cryptography (ECC) certificate or (2) certificate signing requests (CSR), related to generating key IDs.

nvd
почти 11 лет назад

The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3.x before 3.1.28, 3.2.x before 3.2.20, and 3.3.x before 3.3.10 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) Elliptic Curve Cryptography (ECC) certificate or (2) certificate signing requests (CSR), related to generating key IDs.

debian
почти 11 лет назад

The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3. ...

github
больше 3 лет назад

The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3.x before 3.1.28, 3.2.x before 3.2.20, and 3.3.x before 3.3.10 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) Elliptic Curve Cryptography (ECC) certificate or (2) certificate signing requests (CSR), related to generating key IDs.

oracle-oval
почти 11 лет назад

ELSA-2014-1846: gnutls security update (MODERATE)

EPSS

Процентиль: 73%
0.00812
Низкий

5 Medium

CVSS2

Уязвимость CVE-2014-8564