CVE-2019-3829 PUBLISHED

A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in the certificate verification API. Any client or server application that verifies X.509 certificates with GnuTLS 3.5.8 or later is affected.

EPSS 2.08% · 83.9th percentile

Risk Scores

EPSS Score
2.08%
83.9th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSgnutls280, 3.5.8-6ubuntu3, 3.5.17-1ubuntu1

Timeline

References

Open in Interactive Console →