The record packet parsing in GnuTLS 1.2 before 1.2.3 and 1.0 before 1.0.25 allows remote attackers to cause a denial of service, possibly related to padding bytes in gnutils_cipher.c.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gnutls | Gnu | 1.0.18 (including) | 1.0.18 (including) |
Gnutls | Gnu | 1.0.19 (including) | 1.0.19 (including) |
Gnutls | Gnu | 1.0.20 (including) | 1.0.20 (including) |
Gnutls | Gnu | 1.0.21 (including) | 1.0.21 (including) |
Gnutls | Gnu | 1.0.22 (including) | 1.0.22 (including) |
Gnutls | Gnu | 1.0.23 (including) | 1.0.23 (including) |
Gnutls | Gnu | 1.0.24 (including) | 1.0.24 (including) |
Gnutls | Gnu | 1.2.0 (including) | 1.2.0 (including) |
Gnutls | Gnu | 1.2.1 (including) | 1.2.1 (including) |
Gnutls | Gnu | 1.2.2 (including) | 1.2.2 (including) |
Red Hat Enterprise Linux 4 | RedHat | gnutls-0:1.0.20-3.2.1 | * |
Gnutls11 | Ubuntu | dapper | * |