7.5 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
7.1 High
AI Score
Confidence
High
0.002 Low
EPSS
Percentile
59.0%
Software: gnutls 3.6.16
OS: ROSA Virtualization 2.1
package_evr_string: gnutls-3.6.16-6.0.1.rv3.src.rpm
CVE-ID: CVE-2021-4209
BDU-ID: 2022-01898
CVE-Crit: MEDIUM
CVE-DESC.: An implementation vulnerability in the wrap_nettle_hash_fast() function of the GnuTLS cryptographic library is related to pointer dereferencing errors. Exploitation of the vulnerability could allow an attacker acting remotely to cause a denial of service
CVE-STATUS: Fixed
CVE-REV: To close, run the yum update gnutls command
CVE-ID: CVE-2022-2509
BDU-ID: None
CVE-Crit: HIGH
CVE-DESC.: A vulnerability has been discovered in gnutls. This security flaw occurs because a double error occurs during pkcs7 signature verification in the gnutls_pkcs7_verify function.
CVE-STATUS: Fixed
CVE-REV: Run the yum update gnutls command to close it
7.5 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
7.1 High
AI Score
Confidence
High
0.002 Low
EPSS
Percentile
59.0%