gnutls28: code execution
| Package(s): | gnutls28 | CVE #(s): | CVE-2014-8564 | ||||||||||||||||||||||||||||||||||||||||
| Created: | November 11, 2014 | Updated: | November 19, 2014 | ||||||||||||||||||||||||||||||||||||||||
| Description: | From the Ubuntu advisory:
Sean Burford discovered that GnuTLS incorrectly handled printing certain elliptic curve parameters. A malicious remote server or client could use this issue to cause GnuTLS to crash, resulting in a denial of service, or possibly execute arbitrary code. | ||||||||||||||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||||||||||||||
