Boletines de Vulnerabilidades

DSA-2869 gnutls26 - incorrect certificate verification


Información sobre el sistema

   
Software afectado Debian

Descripción

Nikos Mavrogiannopoulos of Red Hat discovered an X.509 certificateverification issue in GnuTLS, an SSL/TLS library. A certificatevalidation could be reported sucessfully even in cases were an errorwould prevent all verification steps to be performed.

More info:

http://www.debian.org/security/2014/dsa-2869

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0092 and DSA-2869.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-03-05

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT