A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite().
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | RedHat | gnutls-0:3.8.9-9.el10_0.14 | * |
| Red Hat Enterprise Linux 8 | RedHat | gnutls-0:3.6.16-8.el8_10.4 | * |
| Red Hat Enterprise Linux 8 | RedHat | gnutls-0:3.6.16-8.el8_10.4 | * |
| Red Hat Enterprise Linux 9 | RedHat | gnutls-0:3.8.3-6.el9_6.2 | * |
| Red Hat Enterprise Linux 9 | RedHat | gnutls-0:3.8.3-6.el9_6.2 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | gnutls-0:3.7.6-21.el9_2.4 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | gnutls-0:3.8.3-4.el9_4.4 | * |
| Red Hat Ceph Storage 7 | RedHat | rhceph/rhceph-7-rhel9:sha256:ce213d48fbefae6b9d5f5a64b79c6ed016afcb646bf7b5742707ed31f9a464a2 | * |
| Red Hat Discovery 2 | RedHat | discovery/discovery-ui-rhel9:sha256:435ba9959b793d46a63a74c343bb8c3ff68350496afec12cc5e894dfc40b7648 | * |
| Red Hat Insights proxy 1.5 | RedHat | insights-proxy/insights-proxy-container-rhel9:sha256:8eb6b896e1eac4080a564e146f95c4166e47ca137083b37119027c6a77011207 | * |
| Gnutls28 | Ubuntu | devel | * |
| Gnutls28 | Ubuntu | esm-infra/focal | * |
| Gnutls28 | Ubuntu | fips-updates/jammy | * |
| Gnutls28 | Ubuntu | fips-updates/noble | * |
| Gnutls28 | Ubuntu | jammy | * |
| Gnutls28 | Ubuntu | noble | * |
| Gnutls28 | Ubuntu | oracular | * |
| Gnutls28 | Ubuntu | plucky | * |
| Gnutls28 | Ubuntu | questing | * |
| Gnutls28 | Ubuntu | upstream | * |