A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of name constraints and subject alternative names (SANs).
An algorithm in a product has an inefficient worst-case computational complexity that may be detrimental to system performance and can be triggered by an attacker, typically using crafted manipulations that ensure that the worst case is being reached.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | RedHat | gnutls-0:3.8.10-3.el10_1 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | gnutls-0:3.8.9-9.el10_0.17 | * |
| Red Hat Enterprise Linux 8 | RedHat | gnutls-0:3.6.16-8.el8_10.5 | * |
| Red Hat Enterprise Linux 8 | RedHat | gnutls-0:3.6.16-8.el8_10.5 | * |
| Red Hat Enterprise Linux 9 | RedHat | gnutls-0:3.8.3-10.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | gnutls-0:3.8.3-10.el9_7 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | gnutls-0:3.7.6-21.el9_2.5 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | gnutls-0:3.8.3-4.el9_4.5 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | gnutls-0:3.8.3-6.el9_6.3 | * |
| RHEL-8 based Middleware Containers | RedHat | rhpam-7/rhpam-businesscentral-monitoring-rhel8:7.13.5-4.1777325677 | * |
| RHEL-8 based Middleware Containers | RedHat | rhpam-7/rhpam-businesscentral-rhel8:7.13.5-4.1777325711 | * |
| RHEL-8 based Middleware Containers | RedHat | rhpam-7/rhpam-controller-rhel8:7.13.5-4.1777325710 | * |
| RHEL-8 based Middleware Containers | RedHat | rhpam-7/rhpam-dashbuilder-rhel8:7.13.5-3.1777325680 | * |
| RHEL-8 based Middleware Containers | RedHat | rhpam-7/rhpam-kieserver-rhel8:7.13.5-4.1777325709 | * |
| RHEL-8 based Middleware Containers | RedHat | rhpam-7/rhpam-process-migration-rhel8:7.13.5-4.1777325680 | * |
| RHEL-8 based Middleware Containers | RedHat | rhpam-7/rhpam-smartrouter-rhel8:7.13.5-4.1777325708 | * |
| Red Hat AI Inference Server 3.2 | RedHat | rhaiis/model-opt-cuda-rhel9:1780681984 | * |
| Red Hat AI Inference Server 3.2 | RedHat | rhaiis/vllm-cuda-rhel9:1775740563 | * |
| Red Hat AI Inference Server 3.3 | RedHat | rhaiis/model-opt-cuda-rhel9:1778244559 | * |
| Red Hat AI Inference Server 3.3 | RedHat | rhaiis/vllm-rocm-rhel9:1778244531 | * |
| Red Hat AI Inference Server 3.3 | RedHat | rhaiis/vllm-spyre-rhel9:1778244546 | * |
| Red Hat AI Inference Server 3.3 | RedHat | rhaiis/vllm-cuda-rhel9:1775680192 | * |
| Red Hat AI Inference Server 3.3 | RedHat | rhaiis/vllm-rocm-rhel9:1775680262 | * |
| Red Hat AI Inference Server 3.3 | RedHat | rhaiis/model-opt-cuda-rhel9:1775749857 | * |
| Red Hat Ceph Storage 8 | RedHat | rhceph/rhceph-8-rhel9:1774002867 | * |
| Red Hat Discovery 2 | RedHat | discovery/discovery-server-rhel9:1775668717 | * |
| Red Hat Discovery 2 | RedHat | discovery/discovery-ui-rhel9:1775675922 | * |
| Red Hat Hardened Images | RedHat | gnutls-main-3.8.12-1.1.hum1 | * |
| Red Hat Insights proxy 1.5 | RedHat | insights-proxy/insights-proxy-container-rhel9:1773685509 | * |
| Red Hat Update Infrastructure 5 | RedHat | rhui5/cds-rhel9:1773670073 | * |
| Red Hat Update Infrastructure 5 | RedHat | rhui5/haproxy-rhel9:1773672059 | * |
| Red Hat Update Infrastructure 5 | RedHat | rhui5/installer-rhel9:1773668803 | * |
| Red Hat Update Infrastructure 5 | RedHat | rhui5/rhua-rhel9:1773670137 | * |
| Gnutls28 | Ubuntu | esm-infra/xenial | * |
| Gnutls28 | Ubuntu | fips-updates/jammy | * |
| Gnutls28 | Ubuntu | fips-updates/noble | * |
| Gnutls28 | Ubuntu | jammy | * |
| Gnutls28 | Ubuntu | noble | * |
| Gnutls28 | Ubuntu | questing | * |
| Gnutls28 | Ubuntu | upstream | * |