ZeroHour

CVE-2019-3829

PoC ×2
CVSS 3.0
7.5 high
EPSS
59%p99
Published
()
Modified
Description

A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in the certificate verification API. Any client or server application that verifies X.509 certificates with GnuTLS 3.5.8 or later is affected.

Vendors
gnufedoraproject
Products
gnutls, fedora
Weakness
CWE-416, CWE-415
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.