Описание
Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.
Релиз | Статус | Примечание |
---|---|---|
artful | DNE | |
bionic | DNE | |
cosmic | DNE | |
devel | DNE | |
disco | DNE | |
esm-infra-legacy/trusty | not-affected | 2.12.23-12ubuntu2.6 |
precise | released | 2.12.14-5ubuntu3.13 |
precise/esm | not-affected | 2.12.14-5ubuntu3.13 |
trusty | released | 2.12.23-12ubuntu2.6 |
trusty/esm | not-affected | 2.12.23-12ubuntu2.6 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
artful | released | 3.5.6-4ubuntu3 |
bionic | released | 3.5.6-4ubuntu3 |
cosmic | released | 3.5.6-4ubuntu3 |
devel | released | 3.5.6-4ubuntu3 |
disco | released | 3.5.6-4ubuntu3 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
esm-infra/bionic | not-affected | 3.5.6-4ubuntu3 |
esm-infra/xenial | not-affected | 3.4.10-4ubuntu1.2 |
precise | ignored | end of life |
precise/esm | DNE | precise was needed |
Показывать по
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.
Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.
Multiple heap-based buffer overflows in the read_attribute function in ...
Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.
Уязвимость функции read_attribute в библиотеке GnuTLS, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю оказывать воздействие на целостность и доступность данных
7.5 High
CVSS2
9.8 Critical
CVSS3