CVE-2019-3836
PoC —CVSS 3.0
7.5 high
EPSS
3%p88
Published
()
Modified
Description
It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versions 3.6.3 or later which can be triggered by certain post-handshake messages.
- Vendors
- gnufedoraprojectopensuse
- Products
- gnutls, fedora, leap
- Weakness
- CWE-456, CWE-824
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.