CVE Vulnerabilities

CVE-2014-8564

Published: Nov 13, 2014 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
6.8 MODERATE
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3.x before 3.1.28, 3.2.x before 3.2.20, and 3.3.x before 3.3.10 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) Elliptic Curve Cryptography (ECC) certificate or (2) certificate signing requests (CSR), related to generating key IDs.

Affected Software

Name Vendor Start Version End Version
Gnutls Gnu 3.0 (including) 3.0 (including)
Gnutls Gnu 3.0.0 (including) 3.0.0 (including)
Gnutls Gnu 3.0.1 (including) 3.0.1 (including)
Gnutls Gnu 3.0.2 (including) 3.0.2 (including)
Gnutls Gnu 3.0.3 (including) 3.0.3 (including)
Gnutls Gnu 3.0.4 (including) 3.0.4 (including)
Gnutls Gnu 3.0.5 (including) 3.0.5 (including)
Gnutls Gnu 3.0.6 (including) 3.0.6 (including)
Gnutls Gnu 3.0.7 (including) 3.0.7 (including)
Gnutls Gnu 3.0.8 (including) 3.0.8 (including)
Gnutls Gnu 3.0.9 (including) 3.0.9 (including)
Gnutls Gnu 3.0.10 (including) 3.0.10 (including)
Gnutls Gnu 3.0.11 (including) 3.0.11 (including)
Gnutls Gnu 3.0.12 (including) 3.0.12 (including)
Gnutls Gnu 3.0.13 (including) 3.0.13 (including)
Gnutls Gnu 3.0.14 (including) 3.0.14 (including)
Gnutls Gnu 3.0.15 (including) 3.0.15 (including)
Gnutls Gnu 3.0.16 (including) 3.0.16 (including)
Gnutls Gnu 3.0.17 (including) 3.0.17 (including)
Gnutls Gnu 3.0.18 (including) 3.0.18 (including)
Gnutls Gnu 3.0.19 (including) 3.0.19 (including)
Gnutls Gnu 3.0.20 (including) 3.0.20 (including)
Gnutls Gnu 3.0.21 (including) 3.0.21 (including)
Gnutls Gnu 3.0.22 (including) 3.0.22 (including)
Gnutls Gnu 3.0.23 (including) 3.0.23 (including)
Gnutls Gnu 3.0.24 (including) 3.0.24 (including)
Gnutls Gnu 3.0.25 (including) 3.0.25 (including)
Gnutls Gnu 3.0.26 (including) 3.0.26 (including)
Gnutls Gnu 3.0.27 (including) 3.0.27 (including)
Gnutls Gnu 3.0.28 (including) 3.0.28 (including)
Gnutls Gnu 3.1.0 (including) 3.1.0 (including)
Gnutls Gnu 3.1.1 (including) 3.1.1 (including)
Gnutls Gnu 3.1.2 (including) 3.1.2 (including)
Gnutls Gnu 3.1.3 (including) 3.1.3 (including)
Gnutls Gnu 3.1.4 (including) 3.1.4 (including)
Gnutls Gnu 3.1.5 (including) 3.1.5 (including)
Gnutls Gnu 3.1.6 (including) 3.1.6 (including)
Gnutls Gnu 3.1.7 (including) 3.1.7 (including)
Gnutls Gnu 3.1.8 (including) 3.1.8 (including)
Gnutls Gnu 3.1.9 (including) 3.1.9 (including)
Gnutls Gnu 3.1.10 (including) 3.1.10 (including)
Gnutls Gnu 3.1.11 (including) 3.1.11 (including)
Gnutls Gnu 3.1.12 (including) 3.1.12 (including)
Gnutls Gnu 3.1.13 (including) 3.1.13 (including)
Gnutls Gnu 3.1.14 (including) 3.1.14 (including)
Gnutls Gnu 3.1.15 (including) 3.1.15 (including)
Gnutls Gnu 3.1.16 (including) 3.1.16 (including)
Gnutls Gnu 3.1.17 (including) 3.1.17 (including)
Gnutls Gnu 3.1.18 (including) 3.1.18 (including)
Gnutls Gnu 3.1.19 (including) 3.1.19 (including)
Gnutls Gnu 3.1.20 (including) 3.1.20 (including)
Gnutls Gnu 3.1.21 (including) 3.1.21 (including)
Gnutls Gnu 3.1.22 (including) 3.1.22 (including)
Gnutls Gnu 3.1.23 (including) 3.1.23 (including)
Gnutls Gnu 3.1.24 (including) 3.1.24 (including)
Gnutls Gnu 3.1.25 (including) 3.1.25 (including)
Gnutls Gnu 3.1.26 (including) 3.1.26 (including)
Gnutls Gnu 3.1.27 (including) 3.1.27 (including)
Gnutls Gnu 3.2.0 (including) 3.2.0 (including)
Gnutls Gnu 3.2.1 (including) 3.2.1 (including)
Gnutls Gnu 3.2.2 (including) 3.2.2 (including)
Gnutls Gnu 3.2.3 (including) 3.2.3 (including)
Gnutls Gnu 3.2.4 (including) 3.2.4 (including)
Gnutls Gnu 3.2.5 (including) 3.2.5 (including)
Gnutls Gnu 3.2.6 (including) 3.2.6 (including)
Gnutls Gnu 3.2.7 (including) 3.2.7 (including)
Gnutls Gnu 3.2.8 (including) 3.2.8 (including)
Gnutls Gnu 3.2.8.1 (including) 3.2.8.1 (including)
Gnutls Gnu 3.2.9 (including) 3.2.9 (including)
Gnutls Gnu 3.2.10 (including) 3.2.10 (including)
Gnutls Gnu 3.2.11 (including) 3.2.11 (including)
Gnutls Gnu 3.2.12 (including) 3.2.12 (including)
Gnutls Gnu 3.2.12.1 (including) 3.2.12.1 (including)
Gnutls Gnu 3.2.13 (including) 3.2.13 (including)
Gnutls Gnu 3.2.14 (including) 3.2.14 (including)
Gnutls Gnu 3.2.15 (including) 3.2.15 (including)
Gnutls Gnu 3.2.16 (including) 3.2.16 (including)
Gnutls Gnu 3.2.17 (including) 3.2.17 (including)
Gnutls Gnu 3.2.18 (including) 3.2.18 (including)
Gnutls Gnu 3.2.19 (including) 3.2.19 (including)
Gnutls Gnu 3.3.0 (including) 3.3.0 (including)
Gnutls Gnu 3.3.0-pre0 (including) 3.3.0-pre0 (including)
Gnutls Gnu 3.3.1 (including) 3.3.1 (including)
Gnutls Gnu 3.3.2 (including) 3.3.2 (including)
Gnutls Gnu 3.3.3 (including) 3.3.3 (including)
Gnutls Gnu 3.3.4 (including) 3.3.4 (including)
Gnutls Gnu 3.3.5 (including) 3.3.5 (including)
Gnutls Gnu 3.3.6 (including) 3.3.6 (including)
Gnutls Gnu 3.3.7 (including) 3.3.7 (including)
Gnutls Gnu 3.3.8 (including) 3.3.8 (including)
Gnutls Gnu 3.3.9 (including) 3.3.9 (including)
Red Hat Enterprise Linux 7 RedHat gnutls-0:3.1.18-10.el7_0 *
Gnutls28 Ubuntu artful *
Gnutls28 Ubuntu bionic *
Gnutls28 Ubuntu cosmic *
Gnutls28 Ubuntu devel *
Gnutls28 Ubuntu disco *
Gnutls28 Ubuntu precise *
Gnutls28 Ubuntu trusty *
Gnutls28 Ubuntu utopic *
Gnutls28 Ubuntu vivid *
Gnutls28 Ubuntu vivid/stable-phone-overlay *
Gnutls28 Ubuntu vivid/ubuntu-core *
Gnutls28 Ubuntu wily *
Gnutls28 Ubuntu xenial *
Gnutls28 Ubuntu yakkety *
Gnutls28 Ubuntu zesty *

References