First published: Tue May 12 2020(Updated: )
OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenConnect | =8.09 | |
Fedora | =30 | |
Fedora | =31 | |
Fedora | =32 | |
Debian | =8.0 | |
SUSE Linux | =15.1 | |
SUSE Linux | =15.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12823 has a severity rating that indicates it can cause denial of service through application crashes.
To fix CVE-2020-12823, you should update OpenConnect to version 8.10 or later as recommended by security advisories.
CVE-2020-12823 affects OpenConnect version 8.09 and specific Fedora, Debian, and openSUSE releases.
CVE-2020-12823 is a buffer overflow vulnerability that may lead to application crashes.
Yes, CVE-2020-12823 can impact network security by causing applications to crash, leading to potential denial of service.