RHSA-2025:16115: Moderate: gnutls security, bug fix, and enhancement update
Moderate: gnutls security, bug fix, and enhancement update
Other sources
The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS.Security Fix(es): gnutls: Vulnerability in GnuTLS certtool template parsing (CVE-2025-32990) gnutls: Vulnerability in GnuTLS SCT extension parsing (CVE-2025-32989) gnutls: Vulnerability in GnuTLS otherName SAN export (CVE-2025-32988) gnutls: NULL pointer dereference in gnutlsfigurecommonciphersuite() (CVE-2025-6395) Bug Fix(es) and Enhancement(s): gnutls: Vulnerability in GnuTLS certtool template parsing (BZ#2359620) gnutls: Vulnerability in GnuTLS SCT extension parsing (BZ#2359621) gnutls: Vulnerability in GnuTLS otherName SAN export (BZ#2359622) gnutls: NULL pointer dereference in gnutlsfigurecommonciphersuite() (BZ#2376755) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/gnutlsto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-daneto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-dane-debuginfoto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-debuginfoto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-debugsourceto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-develto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-fipsto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-utilsto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutls-utils-debuginfoto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14 - Upgrade
Upgrade
redhat/gnutlsto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-daneto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-dane-debuginfoto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-debuginfoto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-debugsourceto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-develto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-fipsto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-utilsto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa - Upgrade
Upgrade
redhat/gnutls-utils-debuginfoto a version that resolves this vulnerability.Fixed in 3.8.9-9.el10_0.14.aa
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:16115?
The severity of RHSA-2025:16115 is classified as moderate.
How do I fix RHSA-2025:16115?
You can fix RHSA-2025:16115 by updating the gnutls package to version 3.8.9-9.el10_0.14.
Which systems are affected by RHSA-2025:16115?
RHSA-2025:16115 affects various versions of Red Hat Enterprise Linux including those for IBM z Systems, Power, ARM 64, and x86_64.
What is the nature of the vulnerability in RHSA-2025:16115?
The vulnerability in RHSA-2025:16115 involves an issue with the GnuTLS certtool.
Is there a workaround for RHSA-2025:16115?
There is no specified workaround for RHSA-2025:16115; updating to the fixed package is recommended.