Lucene search

K
almalinuxAlmaLinuxALSA-2020:5483
HistoryDec 15, 2020 - 3:58 p.m.

Moderate: gnutls security and bug fix update

2020-12-1515:58:18
errata.almalinux.org
14

0.004 Low

EPSS

Percentile

73.2%

The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS.

Security Fix(es):

  • gnutls: Heap buffer overflow in handshake with no_renegotiation alert sent (CVE-2020-24659)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • gnutls: Add self-tests for implemented KDF algorithms and CMAC (BZ#1903037)