gnutls28: code execution
Package(s): | gnutls28 | CVE #(s): | CVE-2014-8564 | ||||||||||||||||||||||||||||||||||||||||
Created: | November 11, 2014 | Updated: | November 19, 2014 | ||||||||||||||||||||||||||||||||||||||||
Description: | From the Ubuntu advisory:
Sean Burford discovered that GnuTLS incorrectly handled printing certain elliptic curve parameters. A malicious remote server or client could use this issue to cause GnuTLS to crash, resulting in a denial of service, or possibly execute arbitrary code. | ||||||||||||||||||||||||||||||||||||||||||
Alerts: |
|