vulnerability
CentOS Linux: CVE-2019-3836: Moderate: gnutls security, bug fix, and enhancement update (CESA-2019:3600)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:N/I:N/A:P) | Apr 1, 2019 | Nov 6, 2019 | May 25, 2023 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Apr 1, 2019
Added
Nov 6, 2019
Modified
May 25, 2023
Description
It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versions 3.6.3 or later which can be triggered by certain post-handshake messages.
Solution(s)
centos-upgrade-gnutlscentos-upgrade-gnutls-ccentos-upgrade-gnutls-c-debuginfocentos-upgrade-gnutls-danecentos-upgrade-gnutls-dane-debuginfocentos-upgrade-gnutls-debuginfocentos-upgrade-gnutls-debugsourcecentos-upgrade-gnutls-develcentos-upgrade-gnutls-utilscentos-upgrade-gnutls-utils-debuginfo
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.