RedHat gnutls CVE-2020-24659 Out of Bounds Write Vulnerability

description-logoDescription

The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS. Security Fix(es): gnutls: Heap buffer overflow in handshake with no_renegotiation alert sent (CVE-2020-24659) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): gnutls: Add self-tests for implemented KDF algorithms and CMAC (BZ#1903037)

affected-products-logoAffected Applications

gnutls

CVE References

CVE-2020-24659