cbcvebase.

Debian Gnutls28 vulnerabilities

51 known vulnerabilities affecting debian/gnutls28.

Total CVEs
51
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH15MEDIUM27LOW4

Vulnerabilities

Page 3 of 3
CVE-2024-28834P4MEDIUMCVSS 5.3fixed in gnutls28 3.7.9-2+deb12u3 (bookworm)2024
CVE-2024-28834 [MEDIUM] CVE-2024-28834: gnutls28 - A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability ... A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability that exploits deterministic behavior in systems like GnuTLS, leading to side-channel leaks. In specific scenarios, such as when using the GNUTLS_PRIVKEY_FLAG_REPRODUCIBLE flag, it can result in a noticeable step in nonce size from 513 to 512 bits, exposing a potential timing side-chan
debian
CVE-2023-5981P4MEDIUMCVSS 5.9fixed in gnutls28 3.7.9-2+deb12u1 (bookworm)2023
CVE-2023-5981 [MEDIUM] CVE-2023-5981: gnutls28 - A vulnerability was found that the response times to malformed ciphertexts in RS... A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding. Scope: local bookworm: resolved (fixed in 3.7.9-2+deb12u1) bullseye: resolved (fixed in 3.7.1-5+deb11u4) forky: resolved (fixed in 3.8.2-1) sid: resolved (fixed in 3.8.2-1) trixie: resolv
debian
CVE-2014-3465P4MEDIUMCVSS 5.0fixed in gnutls28 3.2.10-1 (bookworm)2014
CVE-2014-3465 [MEDIUM] CVE-2014-3465: gnutls28 - The gnutls_x509_dn_oid_name function in lib/x509/common.c in GnuTLS 3.0 before 3... The gnutls_x509_dn_oid_name function in lib/x509/common.c in GnuTLS 3.0 before 3.1.20 and 3.2.x before 3.2.10 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted X.509 certificate, related to a missing LDAP description for an OID when printing the DN. Scope: local bookworm: resolved (fixed in 3.2.10-1) bullseye: resolved (f
debian
CVE-2014-8564P4MEDIUMCVSS 5.0fixed in gnutls28 3.3.8-4 (bookworm)2014
CVE-2014-8564 [MEDIUM] CVE-2014-8564: gnutls28 - The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3.x before 3... The _gnutls_ecc_ansi_x963_export function in gnutls_ecc.c in GnuTLS 3.x before 3.1.28, 3.2.x before 3.2.20, and 3.3.x before 3.3.10 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) Elliptic Curve Cryptography (ECC) certificate or (2) certificate signing requests (CSR), related to generating key IDs. Scope: local bookworm:
debian
CVE-2018-16868P4MEDIUMCVSS 5.6fixed in gnutls28 3.6.5-2 (bookworm)2018
CVE-2018-16868 [MEDIUM] CVE-2018-16868: gnutls28 - A Bleichenbacher type side-channel based padding oracle attack was found in the ... A Bleichenbacher type side-channel based padding oracle attack was found in the way gnutls handles verification of RSA decrypted PKCS#1 v1.5 data. An attacker who is able to run process on the same physical core as the victim process, could use this to extract plaintext or in some cases downgrade any TLS connections to a vulnerable server. Scope: local bookworm:
debian
CVE-2013-1619P4LOWCVSS 2.6fixed in gnutls28 3.0.22-3 (bookworm)2013
CVE-2013-1619 [LOW] CVE-2013-1619: gnutls28 - The TLS implementation in GnuTLS before 2.12.23, 3.0.x before 3.0.28, and 3.1.x ... The TLS implementation in GnuTLS before 2.12.23, 3.0.x before 3.0.28, and 3.1.x before 3.1.7 does not properly consider timing side-channel attacks on a noncompliant MAC check operation during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data f
debian
CVE-2018-10846P4MEDIUMCVSS 5.6fixed in gnutls28 3.5.19-1 (bookworm)2018
CVE-2018-10846 [MEDIUM] CVE-2018-10846: gnutls28 - A cache-based side channel in GnuTLS implementation that leads to plain text rec... A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13 attack to recover plain text using crafted packets. Scope: local bookworm: resolved (fixed in 3.5.19-1) bullseye: resolved (fixed in 3.5.19
debian
CVE-2012-1573P4HIGHCVSS 5.0fixed in gnutls28 3.0.17-2 (bookworm)2012
CVE-2012-1573 [MEDIUM] CVE-2012-1573: gnutls28 - gnutls_cipher.c in libgnutls in GnuTLS before 2.12.17 and 3.x before 3.0.15 does... gnutls_cipher.c in libgnutls in GnuTLS before 2.12.17 and 3.x before 3.0.15 does not properly handle data encrypted with a block cipher, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) via a crafted record, as demonstrated by a crafted GenericBlockCipher structure. Scope: local bookworm: resolved (fixed in 3
debian
CVE-2012-0390P4MEDIUMCVSS 4.3fixed in gnutls28 3.0.11-1 (bookworm)2012
CVE-2012-0390 [MEDIUM] CVE-2012-0390: gnutls28 - The DTLS implementation in GnuTLS 3.0.10 and earlier executes certain error-hand... The DTLS implementation in GnuTLS 3.0.10 and earlier executes certain error-handling code only if there is a specific relationship between a padding length and the ciphertext size, which makes it easier for remote attackers to recover partial plaintext via a timing side-channel attack, a related issue to CVE-2011-4108. Scope: local bookworm: resolved (fixed in 3.0.
debian
CVE-2024-28835P4MEDIUMCVSS 5.0fixed in gnutls28 3.7.9-2+deb12u3 (bookworm)2024
CVE-2024-28835 [MEDIUM] CVE-2024-28835: gnutls28 - A flaw has been discovered in GnuTLS where an application crash can be induced w... A flaw has been discovered in GnuTLS where an application crash can be induced when attempting to verify a specially crafted .pem bundle using the "certtool --verify-chain" command. Scope: local bookworm: resolved (fixed in 3.7.9-2+deb12u3) bullseye: resolved (fixed in 3.7.1-5+deb11u6) forky: resolved (fixed in 3.8.4-2) sid: resolved (fixed in 3.8.4-2) trixie: re
debian
CVE-2025-9820P4MEDIUMCVSS 4.0fixed in gnutls28 3.7.9-2+deb12u6 (bookworm)2025
CVE-2025-9820 [MEDIUM] CVE-2025-9820: gnutls28 - A flaw was found in the GnuTLS library, specifically in the gnutls_pkcs11_token_... A flaw was found in the GnuTLS library, specifically in the gnutls_pkcs11_token_init() function that handles PKCS#11 token initialization. When a token label longer than expected is processed, the function writes past the end of a fixed-size stack buffer. This programming error can cause the application using GnuTLS to crash or, in certain conditions, be exploited
debian
Debian Gnutls28 vulnerabilities | cvebase