Debian Gnutls28 vulnerabilities
51 known vulnerabilities affecting debian/gnutls28.
Total CVEs
51
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH15MEDIUM27LOW4
Vulnerabilities
Page 1 of 3
CVE-2014-3566P3LOWCVSS 3.4PoCfixed in erlang 1:17.3-dfsg-3 (bookworm)2014
CVE-2014-3566 [LOW] CVE-2014-3566: bouncycastle - The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses...
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
CVE-2011-3389P3MEDIUMCVSS 4.3PoCfixed in asterisk 1:13.7.2~dfsg-1 (bullseye)2011
CVE-2011-3389 [MEDIUM] CVE-2011-3389: asterisk - The SSL protocol, as used in certain configurations in Microsoft Windows and Mic...
The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man-in-the-middle attackers to obtain plaintext HTTP headers via a blockwise chosen-boundary attack (BCBA) on an HTTPS s
debian
CVE-2019-3829P3MEDIUMCVSS 5.3fixed in gnutls28 3.6.7-2 (bookworm)2019
CVE-2019-3829 [MEDIUM] CVE-2019-3829: gnutls28 - A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory c...
A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in the certificate verification API. Any client or server application that verifies X.509 certificates with GnuTLS 3.5.8 or later is affected.
Scope: local
bookworm: resolved (fixed in 3.6.7-2)
bullseye: resolved (fixed in 3.6.7-2)
forky: resolved (
debian
CVE-2017-5334P3CRITICALCVSS 9.8fixed in gnutls28 3.5.8-1 (bookworm)2017
CVE-2017-5334 [CRITICAL] CVE-2017-5334: gnutls28 - Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS...
Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via crafted policy language information in an X.509 certificate with a Proxy Certificate Information extension.
Scope: local
bookworm: resolved (fixed in 3.5.8-1)
bullseye: resolved (fixed in 3.5.
debian
CVE-2020-13777P3HIGHCVSS 7.4fixed in gnutls28 3.6.14-1 (bookworm)2020
CVE-2020-13777 [HIGH] CVE-2020-13777: gnutls28 - GnuTLS 3.6.x before 3.6.14 uses incorrect cryptography for encrypting a session ...
GnuTLS 3.6.x before 3.6.14 uses incorrect cryptography for encrypting a session ticket (a loss of confidentiality in TLS 1.2, and an authentication bypass in TLS 1.3). The earliest affected version is 3.6.4 (2018-09-24) because of an error in a 2018-09-18 commit. Until the first key rotation, the TLS server always uses wrong data in place of an encryption key deriv
debian
CVE-2012-1663P3HIGHCVSS 7.5PoCfixed in gnutls28 3.0.14-1 (bookworm)2012
CVE-2012-1663 [HIGH] CVE-2012-1663: gnutls28 - Double free vulnerability in libgnutls in GnuTLS before 3.0.14 allows remote att...
Double free vulnerability in libgnutls in GnuTLS before 3.0.14 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted certificate list.
Scope: local
bookworm: resolved (fixed in 3.0.14-1)
bullseye: resolved (fixed in 3.0.14-1)
forky: resolved (fixed in 3.0.14-1)
sid: resolved (fixed in 3.0.14-1
debian
CVE-2017-5336P3CRITICALCVSS 9.8fixed in gnutls28 3.5.8-1 (bookworm)2017
CVE-2017-5336 [CRITICAL] CVE-2017-5336: gnutls28 - Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubk...
Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted OpenPGP certificate.
Scope: local
bookworm: resolved (fixed in 3.5.8-1)
bullseye: resolved (fixed in 3.5.8-1)
forky: resolved (fixed in 3.5.8-1)
sid: resolved (fixed in
debian
CVE-2021-20231P3CRITICALCVSS 9.8fixed in gnutls28 3.7.1-1 (bookworm)2021
CVE-2021-20231 [CRITICAL] CVE-2021-20231: gnutls28 - A flaw was found in gnutls. A use after free issue in client sending key_share e...
A flaw was found in gnutls. A use after free issue in client sending key_share extension may lead to memory corruption and other consequences.
Scope: local
bookworm: resolved (fixed in 3.7.1-1)
bullseye: resolved (fixed in 3.7.1-1)
forky: resolved (fixed in 3.7.1-1)
sid: resolved (fixed in 3.7.1-1)
trixie: resolved (fixed in 3.7.1-1)
debian
CVE-2017-5337P3CRITICALCVSS 9.8fixed in gnutls28 3.5.8-1 (bookworm)2017
CVE-2017-5337 [CRITICAL] CVE-2017-5337: gnutls28 - Multiple heap-based buffer overflows in the read_attribute function in GnuTLS be...
Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.
Scope: local
bookworm: resolved (fixed in 3.5.8-1)
bullseye: resolved (fixed in 3.5.8-1)
forky: resolved (fixed in 3.5.8-1)
sid: resolved (fixed in 3.5.8-1)
trixie:
debian
CVE-2021-20232P3CRITICALCVSS 9.8fixed in gnutls28 3.7.1-1 (bookworm)2021
CVE-2021-20232 [CRITICAL] CVE-2021-20232: gnutls28 - A flaw was found in gnutls. A use after free issue in client_send_params in lib/...
A flaw was found in gnutls. A use after free issue in client_send_params in lib/ext/pre_shared_key.c may lead to memory corruption and other potential consequences.
Scope: local
bookworm: resolved (fixed in 3.7.1-1)
bullseye: resolved (fixed in 3.7.1-1)
forky: resolved (fixed in 3.7.1-1)
sid: resolved (fixed in 3.7.1-1)
trixie: resolved (fixed in 3.7.1-1)
debian
CVE-2026-1584P3LOWCVSS 7.5fixed in gnutls28 3.8.12-1 (forky)2026
CVE-2026-1584 [HIGH] CVE-2026-1584: gnutls28
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 3.8.12-1)
sid: resolved (fixed in 3.8.12-1)
trixie: resolved
debian
CVE-2025-32988P3MEDIUMCVSS 6.5fixed in gnutls28 3.7.9-2+deb12u5 (bookworm)2025
CVE-2025-32988 [MEDIUM] CVE-2025-32988: gnutls28 - A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to ...
A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the export logic of Subject Alternative Name (SAN) entries containing an otherName. If the type-id OID is invalid or malformed, GnuTLS will call asn1_delete_structure() on an ASN.1 node it does not own, leading to a double-free condition when the parent
debian
CVE-2020-11501P3HIGHCVSS 7.4fixed in gnutls28 3.6.13-2 (bookworm)2020
CVE-2020-11501 [HIGH] CVE-2020-11501: gnutls28 - GnuTLS 3.6.x before 3.6.13 uses incorrect cryptography for DTLS. The earliest af...
GnuTLS 3.6.x before 3.6.13 uses incorrect cryptography for DTLS. The earliest affected version is 3.6.3 (2018-07-16) because of an error in a 2017-10-06 commit. The DTLS client always uses 32 '\0' bytes instead of a random value, and thus contributes no randomness to a DTLS negotiation. This breaks the security guarantees of the DTLS protocol.
Scope: local
bookworm
debian
CVE-2016-4456P3HIGHCVSS 7.5fixed in gnutls28 3.4.13-1 (bookworm)2016
CVE-2016-4456 [HIGH] CVE-2016-4456: gnutls28 - The "GNUTLS_KEYLOGFILE" environment variable in gnutls 3.4.12 allows remote atta...
The "GNUTLS_KEYLOGFILE" environment variable in gnutls 3.4.12 allows remote attackers to overwrite and corrupt arbitrary files in the filesystem.
Scope: local
bookworm: resolved (fixed in 3.4.13-1)
bullseye: resolved (fixed in 3.4.13-1)
forky: resolved (fixed in 3.4.13-1)
sid: resolved (fixed in 3.4.13-1)
trixie: resolved (fixed in 3.4.13-1)
debian
CVE-2023-0361P3HIGHCVSS 7.4fixed in gnutls28 3.7.8-5 (bookworm)2023
CVE-2023-0361 [HIGH] CVE-2023-0361: gnutls28 - A timing side-channel in the handling of RSA ClientKeyExchange messages was disc...
A timing side-channel in the handling of RSA ClientKeyExchange messages was discovered in GnuTLS. This side-channel can be sufficient to recover the key encrypted in the RSA ciphertext across a network in a Bleichenbacher style attack. To achieve a successful decryption the attacker would need to send a large amount of specially crafted messages to the vulnerable ser
debian
CVE-2024-0553P3MEDIUMCVSS 5.9fixed in gnutls28 3.7.9-2+deb12u2 (bookworm)2024
CVE-2024-0553 [MEDIUM] CVE-2024-0553: gnutls28 - A vulnerability was found in GnuTLS. The response times to malformed ciphertexts...
A vulnerability was found in GnuTLS. The response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from the response times of ciphertexts with correct PKCS#1 v1.5 padding. This issue may allow a remote attacker to perform a timing side-channel attack in the RSA-PSK key exchange, potentially leading to the leakage of sensitive data. CVE-2024-0553 i
debian
CVE-2014-0092P3MEDIUMCVSS 5.8fixed in gnutls28 3.2.11-2 (bookworm)2014
CVE-2014-0092 [MEDIUM] CVE-2014-0092: gnutls28 - lib/x509/verify.c in GnuTLS before 3.1.22 and 3.2.x before 3.2.12 does not prope...
lib/x509/verify.c in GnuTLS before 3.1.22 and 3.2.x before 3.2.12 does not properly handle unspecified errors when verifying X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers via a crafted certificate.
Scope: local
bookworm: resolved (fixed in 3.2.11-2)
bullseye: resolved (fixed in 3.2.11-2)
forky: resolved (fixed in 3.2
debian
CVE-2024-0567P3HIGHCVSS 7.5fixed in gnutls28 3.7.9-2+deb12u2 (bookworm)2024
CVE-2024-0567 [HIGH] CVE-2024-0567: gnutls28 - A vulnerability was found in GnuTLS, where a cockpit (which uses gnuTLS) rejects...
A vulnerability was found in GnuTLS, where a cockpit (which uses gnuTLS) rejects a certificate chain with distributed trust. This issue occurs when validating a certificate chain with cockpit-certificate-ensure. This flaw allows an unauthenticated, remote client or attacker to initiate a denial of service attack.
Scope: local
bookworm: resolved (fixed in 3.7.9-2+deb1
debian
CVE-2025-32990P3MEDIUMCVSS 6.5fixed in gnutls28 3.7.9-2+deb12u5 (bookworm)2025
CVE-2025-32990 [MEDIUM] CVE-2025-32990: gnutls28 - A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the...
A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certtool utility. When it reads certain settings from a template file, it allows an attacker to cause an out-of-bounds (OOB) NULL pointer write, resulting in memory corruption and a denial-of-service (DoS) that could potentially crash the system.
Sco
debian
CVE-2014-3466P3MEDIUMCVSS 6.8fixed in gnutls28 3.2.15-1 (bookworm)2014
CVE-2014-3466 [MEDIUM] CVE-2014-3466: gnutls28 - Buffer overflow in the read_server_hello function in lib/gnutls_handshake.c in G...
Buffer overflow in the read_server_hello function in lib/gnutls_handshake.c in GnuTLS before 3.1.25, 3.2.x before 3.2.15, and 3.3.x before 3.3.4 allows remote servers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a long session id in a ServerHello message.
Scope: local
bookworm: resolved (fixed in 3.2.15-1)
bullseye: resolv
debian
1 / 3Next →