Bing Shi discovered that GnuTLS incorrectly handled decoding certain DER-encoded certificates. A remote attacker could possibly use this issue to cause GnuTLS to consume resources, leading to a denial of service.
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "3.6.13-2ubuntu1.12",
"binary_name": "gnutls-bin"
},
{
"binary_version": "3.6.13-2ubuntu1.12",
"binary_name": "guile-gnutls"
},
{
"binary_version": "3.6.13-2ubuntu1.12",
"binary_name": "libgnutls-dane0"
},
{
"binary_version": "3.6.13-2ubuntu1.12",
"binary_name": "libgnutls-openssl27"
},
{
"binary_version": "3.6.13-2ubuntu1.12",
"binary_name": "libgnutls28-dev"
},
{
"binary_version": "3.6.13-2ubuntu1.12",
"binary_name": "libgnutls30"
},
{
"binary_version": "3.6.13-2ubuntu1.12",
"binary_name": "libgnutlsxx28"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "3.7.3-4ubuntu1.6",
"binary_name": "gnutls-bin"
},
{
"binary_version": "3.7.3-4ubuntu1.6",
"binary_name": "guile-gnutls"
},
{
"binary_version": "3.7.3-4ubuntu1.6",
"binary_name": "libgnutls-dane0"
},
{
"binary_version": "3.7.3-4ubuntu1.6",
"binary_name": "libgnutls-openssl27"
},
{
"binary_version": "3.7.3-4ubuntu1.6",
"binary_name": "libgnutls28-dev"
},
{
"binary_version": "3.7.3-4ubuntu1.6",
"binary_name": "libgnutls30"
},
{
"binary_version": "3.7.3-4ubuntu1.6",
"binary_name": "libgnutlsxx28"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "3.8.3-1.1ubuntu3.3",
"binary_name": "gnutls-bin"
},
{
"binary_version": "3.8.3-1.1ubuntu3.3",
"binary_name": "libgnutls-dane0t64"
},
{
"binary_version": "3.8.3-1.1ubuntu3.3",
"binary_name": "libgnutls-openssl27t64"
},
{
"binary_version": "3.8.3-1.1ubuntu3.3",
"binary_name": "libgnutls28-dev"
},
{
"binary_version": "3.8.3-1.1ubuntu3.3",
"binary_name": "libgnutls30t64"
}
]
}