CVE-2022-2509
published 2022-08-01CVE-2022-2509: A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in…
PriorityP336high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.49%
71.4th percentile
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | gnutls28 | < gnutls28 3.7.7-1 (bookworm) | gnutls28 3.7.7-1 (bookworm) |
| fedoraproject | fedora | — | — |
| gnu | gnutls | < 3.7.7 | 3.7.7 |
| gnu | gnutls | — | — |
| msrc | cbl2_gnutls_3.7.7-1_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_gnutls_3.6.14-8_on_cbl_mariner_1.0 | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
cisa9.8CRITICAL
vendor_debian7.5HIGH
vendor_msrc7.5HIGH
vendor_oracle7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
gnutls28 vulnerabilities
osv·2022-08-04·CVSS 6.5
CVE-2021-4209 [MEDIUM] gnutls28 vulnerabilities
gnutls28 vulnerabilities
It was discovered that GnuTLS incorrectly handled certain memory
operations. A remote attacker could possibly use this issue to cause GnuTLS
to crash, resulting in a denial of service. This issue only affected Ubuntu
18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-4209)
It was discovered that GnuTLS incorrectly handled the verification of
certain pkcs7 signatures. A remote attacker could use this issue to cause
GnuTLS to crash, resulting in a denial of service, or possibly execute
arbitrary code. (CVE-2022-2509)
GHSA
GHSA-w33j-4mrg-pgc3: A vulnerability found in gnutls
ghsa_unreviewed·2022-08-02
CVE-2022-2509 [HIGH] CWE-415 GHSA-w33j-4mrg-pgc3: A vulnerability found in gnutls
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
OSV
CVE-2022-2509: A vulnerability found in gnutls
osv·2022-08-01·CVSS 7.5
CVE-2022-2509 [HIGH] CVE-2022-2509: A vulnerability found in gnutls
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
Red Hat
kernel: md: Replace snprintf with scnprintf
vendor_redhat·2025-09-15·CVSS 5.5
CVE-2022-50299 [MEDIUM] CWE-190 kernel: md: Replace snprintf with scnprintf
kernel: md: Replace snprintf with scnprintf
In the Linux kernel, the following vulnerability has been resolved:
md: Replace snprintf with scnprintf
Current code produces a warning as shown below when total characters
in the constituent block device names plus the slashes exceeds 200.
snprintf() returns the number of characters generated from the given
input, which could cause the expression “200 – len” to wrap around
to a large positive number. Fix this by using scnprintf() instead,
which returns the actual number of characters written into the buffer.
[ 1513.267938] ------------[ cut here ]------------
[ 1513.267943] WARNING: CPU: 15 PID: 37247 at /lib/vsprintf.c:2509 vsnprintf+0x2c8/0x510
[ 1513.267944] Modules linked in:
[ 1513.267969] CPU: 15 PID: 37247 Comm: mdadm Not tainted 5.4.0-1
Oracle
Oracle Oracle Communications Risk Matrix: Policy (Oracle Linux) — CVE-2022-2509
vendor_oracle·2023-01-15·CVSS 7.5
CVE-2022-2509 [HIGH] Oracle Oracle Communications Risk Matrix: Policy (Oracle Linux) — CVE-2022-2509
Oracle Oracle Communications Risk Matrix: Policy (Oracle Linux) vulnerability
CVE: CVE-2022-2509
CVSS: 7.5
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2023 (JAN 2023)
Microsoft
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
vendor_msrc·2022-08-09·CVSS 7.5
CVE-2022-2509 [HIGH] CWE-415 A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner
Ubuntu
GnuTLS vulnerabilities
vendor_ubuntu·2022-08-04·CVSS 6.5
CVE-2021-4209 [MEDIUM] GnuTLS vulnerabilities
Title: GnuTLS vulnerabilities
Summary: Several security issues were fixed in GnuTLS.
It was discovered that GnuTLS incorrectly handled certain memory
operations. A remote attacker could possibly use this issue to cause GnuTLS
to crash, resulting in a denial of service. This issue only affected Ubuntu
18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-4209)
It was discovered that GnuTLS incorrectly handled the verification of
certain pkcs7 signatures. A remote attacker could use this issue to cause
GnuTLS to crash, resulting in a denial of service, or possibly execute
arbitrary code. (CVE-2022-2509)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
gnutls: Double free during gnutls_pkcs7_verify
vendor_redhat·2022-07-29·CVSS 7.5
CVE-2022-2509 [HIGH] gnutls: Double free during gnutls_pkcs7_verify
gnutls: Double free during gnutls_pkcs7_verify
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
A vulnerability was found in gnutls. This issue is due to a double-free error that occurs during the verification of pkcs7 signatures in the gnutls_pkcs7_verify function.
Statement: This flaw is rated as moderate because the flaw is more difficult to exploit but could still lead to some compromise of the availability of resources under certain circumstances. This is the type of vulnerability that could have had an important impact but is less easily exploited based on a technical evaluation of the flaw, and affect unlikely configurations.
Package: gnutls (Red Hat Enterpri
CISA
QNAP Network-Attached Storage (NAS) Command Injection Vulnerability
cisa·2022-04-11·CVSS 9.8
CVE-2020-2509 [CRITICAL] CWE-77 QNAP Network-Attached Storage (NAS) Command Injection Vulnerability
Vulnerability: QNAP Network-Attached Storage (NAS) Command Injection Vulnerability
Affected: QNAP QNAP Network-Attached Storage (NAS)
QNAP NAS devices contain a command injection vulnerability which could allow attackers to perform remote code execution.
Required Action: Apply updates per vendor instructions.
Notes: https://nvd.nist.gov/vuln/detail/CVE-2020-2509
Remediation Due Date: 2022-05-02
Debian
CVE-2022-2509: gnutls28 - A vulnerability found in gnutls. This security flaw happens because of a double ...
vendor_debian·2022·CVSS 7.5
CVE-2022-2509 [HIGH] CVE-2022-2509: gnutls28 - A vulnerability found in gnutls. This security flaw happens because of a double ...
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
Scope: local
bookworm: resolved (fixed in 3.7.7-1)
bullseye: resolved (fixed in 3.7.1-5+deb11u2)
forky: resolved (fixed in 3.7.7-1)
sid: resolved (fixed in 3.7.7-1)
trixie: resolved (fixed in 3.7.7-1)
No detection rules found.
No public exploits indexed.
https://access.redhat.com/security/cve/CVE-2022-2509https://lists.debian.org/debian-lts-announce/2022/08/msg00002.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FL27JS3VM74YEQU7PGB62USO3KSBYZX/https://lists.gnupg.org/pipermail/gnutls-help/2022-July/004746.htmlhttps://www.debian.org/security/2022/dsa-5203https://access.redhat.com/security/cve/CVE-2022-2509https://lists.debian.org/debian-lts-announce/2022/08/msg00002.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FL27JS3VM74YEQU7PGB62USO3KSBYZX/https://lists.gnupg.org/pipermail/gnutls-help/2022-July/004746.htmlhttps://www.debian.org/security/2022/dsa-5203
2022-08-01
Published