Описание
GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor's GNUTLS-SA-2017-3 report) is fixed in 3.5.10.
Релиз | Статус | Примечание |
---|---|---|
artful | DNE | |
bionic | DNE | |
cosmic | DNE | |
devel | DNE | |
disco | DNE | |
eoan | DNE | |
esm-infra-legacy/trusty | not-affected | 2.12.23-12ubuntu2.8 |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
artful | not-affected | 3.5.8-5ubuntu1 |
bionic | not-affected | 3.5.8-5ubuntu1 |
cosmic | not-affected | 3.5.8-5ubuntu1 |
devel | not-affected | 3.5.8-5ubuntu1 |
disco | not-affected | 3.5.8-5ubuntu1 |
eoan | not-affected | 3.5.8-5ubuntu1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
esm-infra/bionic | not-affected | 3.5.8-5ubuntu1 |
esm-infra/focal | not-affected | 3.5.8-5ubuntu1 |
esm-infra/xenial | not-affected | 3.4.10-4ubuntu1.3 |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor's GNUTLS-SA-2017-3 report) is fixed in 3.5.10.
GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor's GNUTLS-SA-2017-3 report) is fixed in 3.5.10.
GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integ ...
GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor's GNUTLS-SA-2017-3 report) is fixed in 3.5.10.
EPSS
5 Medium
CVSS2
7.5 High
CVSS3