[CLSA-2025:1747903683] gnutls: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-05-22 08:48:08 UTC
Description:
- CVE-2024-28834: fix side-channel leak in the deterministic ECDSA - CVE-2024-28835: fix crash when verifying a certificate chain with more than 16 certificates
Updated packages:
  • gnutls-3.7.6-23.el9_2.tuxcare.3.els2.i686.rpm
    sha:f9340e73e7be7bccca5e9b3d7513eba8c4e8a68f71f2fe4a7ab9edaac90525ab
  • gnutls-3.7.6-23.el9_2.tuxcare.3.els2.x86_64.rpm
    sha:78a66eec949b96dd3a35b8ac4806c4c038dafd56a5902b3a14d231308ac041f7
  • gnutls-c++-3.7.6-23.el9_2.tuxcare.3.els2.i686.rpm
    sha:205224758a486a705ed5399af5642828dd259a429209c1add939dd24a9cf9753
  • gnutls-c++-3.7.6-23.el9_2.tuxcare.3.els2.x86_64.rpm
    sha:b7875cb0ef0a64193baff277c7a1614601e5e32d404eff5384a9de93a6d5dc3a
  • gnutls-dane-3.7.6-23.el9_2.tuxcare.3.els2.i686.rpm
    sha:4e36f6c92eb4cd7f6b725d63a9c730c79cc200e5a6e5ad021fe261c9e1dd8ff9
  • gnutls-dane-3.7.6-23.el9_2.tuxcare.3.els2.x86_64.rpm
    sha:3fa078f575975507b8b0d50b51c3ebc5b9c6ec976b1fb8af86c181543e34b64d
  • gnutls-devel-3.7.6-23.el9_2.tuxcare.3.els2.i686.rpm
    sha:26153ace2442fb87e76dd103b3342a25151cc9fc14c0b624bf52d416af100c9a
  • gnutls-devel-3.7.6-23.el9_2.tuxcare.3.els2.x86_64.rpm
    sha:b22c92756c889a002aedbd42f2b6671caa9ba2b0dbfb516a36dca80ff4bea959
  • gnutls-utils-3.7.6-23.el9_2.tuxcare.3.els2.x86_64.rpm
    sha:d3e377546f1d4aac8498dc97ca31afa1864bdfe2e56cdf7d15d7d19036760b15
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.