[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195549

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2024:1271-1 -- SLES gnutls, libgnutlsxx28, libgnutls-devel, libgnutlsxx-devel, libgnutls30

ID: oval:org.secpod.oval:def:89051754Date: (C)2024-04-26   (M)2024-04-29
Class: PATCHFamily: unix




This update for gnutls fixes the following issues: * CVE-2024-28834: Fixed side-channel in the deterministic ECDSA * CVE-2024-28835: Fixed denial of service during certificate chain verification Other fixes: \- jitterentropy: Release the memory of the entropy collector when using jitterentropy with phtreads as there is also a pre-intitization done in the main thread

Platform:
SUSE Linux Enterprise Desktop 15 SP5
SUSE Linux Enterprise Server 15 SP5
Product:
gnutls
libgnutlsxx28
libgnutls-devel
libgnutlsxx-devel
libgnutls30
Reference:
SUSE-SU-2024:1271-1
CVE-2024-28834
CVE-2024-28835
CVE    2
CVE-2024-28834
CVE-2024-28835
CPE    5
cpe:/a:libgnutls:libgnutls-devel
cpe:/a:libgnutlsxx:libgnutlsxx-devel
cpe:/a:libgnutls30:libgnutls30
cpe:/a:gnu:gnutls
...

© SecPod Technologies