REDHAT-BUG-805432: High severity GNU GnuTLS vulnerability
GnuTLS 3.0.15 was released fixing the following issue:
libgnutls: Corrections in record packet parsing. Reported by Matthew Hall. http://article.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/5912
Patch for 2.x: http://git.savannah.gnu.org/gitweb/?p=gnutls.git;a=commitdiff;h=422214868061370aeeb0ac9cd0f021a5c350a57d
Patch for 3.x: http://git.savannah.gnu.org/gitweb/?p=gnutls.git;a=commitdiff;h=b495740f2ff66550ca9395b3fda3ea32c3acb185
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-805432?
The severity of REDHAT-BUG-805432 is considered medium due to the potential impact on record packet parsing.
How do I fix REDHAT-BUG-805432?
To fix REDHAT-BUG-805432, upgrade GnuTLS to version 3.0.15 or later.
What software is affected by REDHAT-BUG-805432?
REDHAT-BUG-805432 affects GNU GnuTLS versions prior to 3.0.15.
Who reported REDHAT-BUG-805432?
REDHAT-BUG-805432 was reported by Matthew Hall.
What issue does REDHAT-BUG-805432 address?
REDHAT-BUG-805432 addresses corrections in record packet parsing in GnuTLS.