A DNS server that returns more 4 DANE entries could corrupt the memory of a requesting client using the DANE library from GnuTLS before 3.1.15 and 3.2.5 (CVE-2013-4466).
This updates GnuTLS to version 3.1.16, fixing this issue and several other bugs
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2013-0354.json"