Untriaged
Gnutls: null pointer dereference in _gnutls_figure_common_ciphersuite()
A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite(). When it reads certain settings from a template file, it can allow an attacker to cause an out-of-bounds (OOB) NULL pointer write, resulting in memory corruption and a denial of service (DoS) that could crash the system.
Affected products
rhcos
gnutls
- *
libgnutls
- <3.8.10
rhceph/rhceph-7-rhel9
- *
discovery/discovery-ui-rhel9
- *
insights-proxy/insights-proxy-container-rhel9
- *
Matching in nixpkgs
pkgs.guile-gnutls
Guile bindings for GnuTLS library
-
nixos-unstable -
- nixpkgs-unstable 5.0.1
pkgs.python312Packages.python3-gnutls
Python wrapper for the GnuTLS library
-
nixos-unstable -
- nixpkgs-unstable python3-gnutls-3.1.10
pkgs.python313Packages.python3-gnutls
Python wrapper for the GnuTLS library
-
nixos-unstable -
- nixpkgs-unstable python3-gnutls-3.1.10
Package maintainers
-
@vcunat Vladimír Čunát <v@cunat.cz>
-
@foo-dogsquared Gabriel Arazas <foodogsquared@foodogsquared.one>
-
@charlieshanley Charlie Hanley <charlieshanley@gmail.com>