ZeroHour

CVE-2019-3836

PoC
CVSS 3.0
7.5 high
EPSS
3%p88
Published
()
Modified
Description

It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versions 3.6.3 or later which can be triggered by certain post-handshake messages.

Vendors
gnufedoraprojectopensuse
Products
gnutls, fedora, leap
Weakness
CWE-456, CWE-824
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.