CVE Vulnerabilities

CVE-2025-14831

Inefficient Algorithmic Complexity

Published: Feb 09, 2026 | Modified: Jun 10, 2026
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
5.3 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of name constraints and subject alternative names (SANs).

Weakness

An algorithm in a product has an inefficient worst-case computational complexity that may be detrimental to system performance and can be triggered by an attacker, typically using crafted manipulations that ensure that the worst case is being reached.

Affected Software

NameVendorStart VersionEnd Version
Red Hat Enterprise Linux 10RedHatgnutls-0:3.8.10-3.el10_1*
Red Hat Enterprise Linux 10.0 Extended Update SupportRedHatgnutls-0:3.8.9-9.el10_0.17*
Red Hat Enterprise Linux 8RedHatgnutls-0:3.6.16-8.el8_10.5*
Red Hat Enterprise Linux 8RedHatgnutls-0:3.6.16-8.el8_10.5*
Red Hat Enterprise Linux 9RedHatgnutls-0:3.8.3-10.el9_7*
Red Hat Enterprise Linux 9RedHatgnutls-0:3.8.3-10.el9_7*
Red Hat Enterprise Linux 9.2 Update Services for SAP SolutionsRedHatgnutls-0:3.7.6-21.el9_2.5*
Red Hat Enterprise Linux 9.4 Extended Update SupportRedHatgnutls-0:3.8.3-4.el9_4.5*
Red Hat Enterprise Linux 9.6 Extended Update SupportRedHatgnutls-0:3.8.3-6.el9_6.3*
RHEL-8 based Middleware ContainersRedHatrhpam-7/rhpam-businesscentral-monitoring-rhel8:7.13.5-4.1777325677*
RHEL-8 based Middleware ContainersRedHatrhpam-7/rhpam-businesscentral-rhel8:7.13.5-4.1777325711*
RHEL-8 based Middleware ContainersRedHatrhpam-7/rhpam-controller-rhel8:7.13.5-4.1777325710*
RHEL-8 based Middleware ContainersRedHatrhpam-7/rhpam-dashbuilder-rhel8:7.13.5-3.1777325680*
RHEL-8 based Middleware ContainersRedHatrhpam-7/rhpam-kieserver-rhel8:7.13.5-4.1777325709*
RHEL-8 based Middleware ContainersRedHatrhpam-7/rhpam-process-migration-rhel8:7.13.5-4.1777325680*
RHEL-8 based Middleware ContainersRedHatrhpam-7/rhpam-smartrouter-rhel8:7.13.5-4.1777325708*
Red Hat AI Inference Server 3.2RedHatrhaiis/model-opt-cuda-rhel9:1780681984*
Red Hat AI Inference Server 3.2RedHatrhaiis/vllm-cuda-rhel9:1775740563*
Red Hat AI Inference Server 3.3RedHatrhaiis/model-opt-cuda-rhel9:1778244559*
Red Hat AI Inference Server 3.3RedHatrhaiis/vllm-rocm-rhel9:1778244531*
Red Hat AI Inference Server 3.3RedHatrhaiis/vllm-spyre-rhel9:1778244546*
Red Hat AI Inference Server 3.3RedHatrhaiis/vllm-cuda-rhel9:1775680192*
Red Hat AI Inference Server 3.3RedHatrhaiis/vllm-rocm-rhel9:1775680262*
Red Hat AI Inference Server 3.3RedHatrhaiis/model-opt-cuda-rhel9:1775749857*
Red Hat Ceph Storage 8RedHatrhceph/rhceph-8-rhel9:1774002867*
Red Hat Discovery 2RedHatdiscovery/discovery-server-rhel9:1775668717*
Red Hat Discovery 2RedHatdiscovery/discovery-ui-rhel9:1775675922*
Red Hat Hardened ImagesRedHatgnutls-main-3.8.12-1.1.hum1*
Red Hat Insights proxy 1.5RedHatinsights-proxy/insights-proxy-container-rhel9:1773685509*
Red Hat Update Infrastructure 5RedHatrhui5/cds-rhel9:1773670073*
Red Hat Update Infrastructure 5RedHatrhui5/haproxy-rhel9:1773672059*
Red Hat Update Infrastructure 5RedHatrhui5/installer-rhel9:1773668803*
Red Hat Update Infrastructure 5RedHatrhui5/rhua-rhel9:1773670137*
Gnutls28Ubuntuesm-infra/xenial*
Gnutls28Ubuntufips-updates/jammy*
Gnutls28Ubuntufips-updates/noble*
Gnutls28Ubuntujammy*
Gnutls28Ubuntunoble*
Gnutls28Ubuntuquesting*
Gnutls28Ubuntuupstream*

References