vulnerability

SUSE: CVE-2017-5336: SUSE Linux Security Advisory

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Jan 27, 2017
Added
Jan 28, 2017
Modified
Aug 14, 2021

Description

Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted OpenPGP certificate.

Solution(s)

suse-upgrade-gnutlssuse-upgrade-libgnutls-develsuse-upgrade-libgnutls-extra-develsuse-upgrade-libgnutls-extra26suse-upgrade-libgnutls-openssl-develsuse-upgrade-libgnutls-openssl27suse-upgrade-libgnutls26suse-upgrade-libgnutls26-32bitsuse-upgrade-libgnutls26-x86suse-upgrade-libgnutls28suse-upgrade-libgnutls28-32bitsuse-upgrade-libgnutlsxx-develsuse-upgrade-libgnutlsxx28
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.