MGASA-2021-0291
Dashboard / Vulnerabilities / MGASA-2021-0291
MGASA-2021-0291
Summary: Updated gnutls packages fix security vulnerabilities
Details: A flaw was found in gnutls. A use after free issue in client sending key_share extension may lead to memory corruption and other consequences (CVE-2021-20231). A flaw was found in gnutls. A use after free issue in client_send_params in lib/ext/pre_shared_key.c may lead to memory corruption and other potential consequences (CVE-2021-20232).
References: https://advisories.mageia.org/MGASA-2021-0291.html, https://bugs.mageia.org/show_bug.cgi?id=29021, https://lists.fedoraproject.org/archives/list/[email protected]/thread/OSLAE6PP33A7VYRYMYMUVB3U6B26GZER/, https://www.gnutls.org/security-new.html#GNUTLS-SA-2021-03-10, https://lists.opensuse.org/archives/list/[email protected]/thread/LUDG7BXPVVVALM2YUCJ2EKIRBHFXMY75/
Affected packages
Package
Name: gnutls
Purl: pkg:rpm/mageia/gnutls?arch=source&distro=mageia-7
Affected ranges
Type: ECOSYSTEM
Events:
