CVE-2017-5336: Buffer Overflow
A vulnerability was found in gnutls. A stack overflow could occur in opencdk in the cdkpkgetkeyid function. A memory corruption could occur when parsing a maliciously crafted OpenPGP certificate.
References:
http://seclists.org/oss-sec/2017/q1/51 https://gnutls.org/security.html#GNUTLS-SA-2017-2
Upstream patch:
https://gitlab.com/gnutls/gnutls/commit/5140422e0d7319a8e2fe07f02cbcafc4d6538732
Other sources
Stack-based buffer overflow in the cdkpkgetkeyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted OpenPGP certificate.
— Launchpad
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/gnutlsto a version that resolves this vulnerability.Fixed in 3.3.26 - Upgrade
Upgrade
redhat/gnutlsto a version that resolves this vulnerability.Fixed in 3.5.8 - Upgrade
Upgrade
debian/gnutls28to a version that resolves this vulnerability.Fixed in 3.7.1-5+deb11u5Fixed in 3.7.1-5+deb11u7Fixed in 3.7.9-2+deb12u4Fixed in 3.8.9-2 - Upgrade
Upgrade
gnutls/gnutlsto a version that resolves this vulnerability.Fixed in 3.3.26 - Upgrade
Upgrade
gnutls/gnutlsto a version that resolves this vulnerability.Fixed in 3.5.8
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5336?
CVE-2017-5336 is classified as a high severity vulnerability due to the potential for remote code execution and memory corruption.
How do I fix CVE-2017-5336?
To fix CVE-2017-5336, update GnuTLS to version 3.3.26 or later for Red Hat or to 3.7.1-5+deb11u5 or later for Debian.
What is affected by CVE-2017-5336?
CVE-2017-5336 affects versions of GnuTLS up to 3.3.25 and several specific Debian and openSUSE versions.
What types of attacks can exploit CVE-2017-5336?
CVE-2017-5336 can be exploited through parsing a specially crafted OpenPGP certificate, leading to stack overflow.
Is CVE-2017-5336 resolved in newer versions?
Yes, CVE-2017-5336 is resolved in GnuTLS versions 3.3.26, 3.5.8, and later, as well as in specific Debian updates.