VDB
BDU%3A2022-01898
BDU%3A2022-01898
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость реализации функции wrap_nettle_hash_fast() криптографической библиотеки GnuTLS, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Novell Inc., ООО «РусБИТех-Астра», Free Software Foundation, Inc., IBM Corp., АО «НТЦ ИТ РОСА», АО "НППКТ", АО «ИВК» | Red Hat Enterprise Linux, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, SUSE Linux Enterprise Real Time Extension, SUSE Linux Enterprise Module for Basesystem, OpenSUSE Leap, Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise High Performance Computing, SUSE Manager Proxy, SUSE Manager Server, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Micro, GnuTLS, IBM Cloud Object Storage Systems, Astra Linux Common Edition (запись в едином реестре российских программ №4433), ROSA Virtualization (запись в едином реестре российских программ №5091), ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), АЛЬТ СП 10, ROSA Virtualization 3.0 (запись в едином реестре российских программ №21308) |
Timeline
- Apr 7, 2022 CVE Published
- Jan 20, 2026 CVE Updated
References
- https://www.suse.com/security/cve/CVE-2021-4209.html url
- https://access.redhat.com/security/cve/cve-2021-4209 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2044156 url
- https://gitlab.com/gnutls/gnutls/-/merge_requests/1503 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2022-1110SE17 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2022-1121SE47 url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.8/ url
- https://abf.rosalinux.ru/advisories/ROSA-SA-2023-2298 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://abf.rosa.ru/advisories/ROSA-SA-2025-2724 url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20251225SE16 url
- https://www.ibm.com/blogs/psirt/security-bulletin-vulnerabilities-with-openjdk-gnutls-affect-ibm-cloud-object-storage-systems-august-2022v1/ advisory