CVE Vulnerabilities

CVE-2015-6251

Published: Aug 24, 2015 | Modified: Dec 24, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

Double free vulnerability in GnuTLS before 3.3.17 and 3.4.x before 3.4.4 allows remote attackers to cause a denial of service via a long DistinguishedName (DN) entry in a certificate.

Affected Software

Name Vendor Start Version End Version
Gnutls Gnu 3.3.0 (including) 3.3.0 (including)
Gnutls Gnu 3.3.0-pre0 (including) 3.3.0-pre0 (including)
Gnutls Gnu 3.3.1 (including) 3.3.1 (including)
Gnutls Gnu 3.3.2 (including) 3.3.2 (including)
Gnutls Gnu 3.3.3 (including) 3.3.3 (including)
Gnutls Gnu 3.3.4 (including) 3.3.4 (including)
Gnutls Gnu 3.3.5 (including) 3.3.5 (including)
Gnutls Gnu 3.3.6 (including) 3.3.6 (including)
Gnutls Gnu 3.3.7 (including) 3.3.7 (including)
Gnutls Gnu 3.3.8 (including) 3.3.8 (including)
Gnutls Gnu 3.3.9 (including) 3.3.9 (including)
Gnutls Gnu 3.3.10 (including) 3.3.10 (including)
Gnutls Gnu 3.3.11 (including) 3.3.11 (including)
Gnutls Gnu 3.3.12 (including) 3.3.12 (including)
Gnutls Gnu 3.3.13 (including) 3.3.13 (including)
Gnutls Gnu 3.3.14 (including) 3.3.14 (including)
Gnutls Gnu 3.3.15 (including) 3.3.15 (including)
Gnutls Gnu 3.3.16 (including) 3.3.16 (including)
Gnutls Gnu 3.4.0 (including) 3.4.0 (including)
Gnutls Gnu 3.4.1 (including) 3.4.1 (including)
Gnutls Gnu 3.4.2 (including) 3.4.2 (including)
Gnutls Gnu 3.4.3 (including) 3.4.3 (including)
Gnutls28 Ubuntu artful *
Gnutls28 Ubuntu bionic *
Gnutls28 Ubuntu cosmic *
Gnutls28 Ubuntu devel *
Gnutls28 Ubuntu disco *
Gnutls28 Ubuntu trusty *
Gnutls28 Ubuntu vivid *
Gnutls28 Ubuntu vivid/stable-phone-overlay *
Gnutls28 Ubuntu vivid/ubuntu-core *
Gnutls28 Ubuntu wily *
Gnutls28 Ubuntu xenial *
Gnutls28 Ubuntu yakkety *
Gnutls28 Ubuntu zesty *

References