[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195549

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2018:2842-1 -- SLES gnutls, libgnutls-openssl27, libgnutls28

ID: oval:org.secpod.oval:def:89002492Date: (C)2021-02-26   (M)2023-02-20
Class: PATCHFamily: unix




This update for gnutls fixes the following issues: Security issues fixed: - Improved mitigations against Lucky 13 class of attacks - quot;Just in Timequot; PRIME + PROBE cache-based side channel attack can lead to plaintext recovery - HMAC-SHA-384 vulnerable to Lucky thirteen attack due to use of wrong constant - HMAC-SHA-256 vulnerable to Lucky thirteen attack due to not enough dummy function calls - The _asn1_check_identifier function in Libtasn1 caused a NULL pointer dereference and crash

Platform:
SUSE Linux Enterprise Server 12 SP3
Product:
gnutls
libgnutls-openssl27
libgnutls28
Reference:
SUSE-SU-2018:2842-1
CVE-2017-10790
CVE-2018-10844
CVE-2018-10845
CVE-2018-10846
CVE    4
CVE-2017-10790
CVE-2018-10846
CVE-2018-10845
CVE-2018-10844
...
CPE    4
cpe:/o:suse:suse_linux_enterprise_server:12:sp3
cpe:/a:gnu:libgnutls-openssl27
cpe:/a:gnu:libgnutls28
cpe:/a:gnu:gnutls
...

© SecPod Technologies