MGASA-2020-0168

Source
https://advisories.mageia.org/MGASA-2020-0168.html
Import Source
https://advisories.mageia.org/MGASA-2020-0168.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2020-0168
Related
Published
2020-04-15T10:12:14Z
Modified
2020-04-15T09:44:56Z
Summary
Updated gnutls packages fix security vulnerability
Details

Updated gnutls packages fix security vulnerability:

A flaw was reported in the DTLS protocol implementation in GnuTLS. The DTLS client would not contribute any randomness to the DTLS negotiation, breaking the security guarantees of the DTLS protocol (CVE-2020-11501).

References
Credits

Affected packages

Mageia:7 / gnutls

Package

Name
gnutls
Purl
pkg:rpm/mageia/gnutls?arch=source&distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.7-1.1.mga7

Ecosystem specific

{
    "section": "core"
}