VDB
DEBIAN-CVE-2019-3836
DEBIAN-CVE-2019-3836
PUBLISHED
CVSS 7.5 HIGH
It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versions 3.6.3 or later which can be triggered by certain post-handshake messages.
Risk Scores
CVSS 3.0
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:13 | gnutls28 | 0, 0, 0 |
| Debian:14 | gnutls28 | 0, 0, 0 |
| Debian:12 | gnutls28 | 0, 0, 0 |
| Debian:11 | gnutls28 | 0, 0, 0 |
Exploit Intelligence
- glcve_test.go (github-poc)
Timeline
- Apr 1, 2019 CVE Published
- Apr 28, 2026 CVE Updated