CLSA-2025-1747903683

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.2esu/CLSA-2025-1747903683.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2025-1747903683
Upstream
Published
2025-05-22T08:48:08Z
Modified
2026-06-01T00:30:47.421232788Z
Summary
gnutls: Fix of 2 CVEs
Details
  • CVE-2024-28834: fix side-channel leak in the deterministic ECDSA
  • CVE-2024-28835: fix crash when verifying a certificate chain with more than 16 certificates
References

Affected packages

TuxCare:AlmaLinux:9.2
gnutls

Package

Name
gnutls
Purl
pkg:rpm/tuxcare/gnutls?distro=almalinux-9.2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.6-23.el9_2.tuxcare.3.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.2esu/CLSA-2025-1747903683.json"
gnutls-c++

Package

Name
gnutls-c++
Purl
pkg:rpm/tuxcare/gnutls-c++?distro=almalinux-9.2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.6-23.el9_2.tuxcare.3.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.2esu/CLSA-2025-1747903683.json"
gnutls-dane

Package

Name
gnutls-dane
Purl
pkg:rpm/tuxcare/gnutls-dane?distro=almalinux-9.2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.6-23.el9_2.tuxcare.3.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.2esu/CLSA-2025-1747903683.json"
gnutls-devel

Package

Name
gnutls-devel
Purl
pkg:rpm/tuxcare/gnutls-devel?distro=almalinux-9.2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.6-23.el9_2.tuxcare.3.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.2esu/CLSA-2025-1747903683.json"
gnutls-utils

Package

Name
gnutls-utils
Purl
pkg:rpm/tuxcare/gnutls-utils?distro=almalinux-9.2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.7.6-23.el9_2.tuxcare.3.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.2esu/CLSA-2025-1747903683.json"