Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The gnutls_x509_dn_oid_name function in lib/x509/common.c in GnuTLS 3.0 before 3.1.20 and 3.2.x before 3.2.10 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted X.509 certificate, related to a missing LDAP description for an OID when printing the DN.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GnuTLS ‘gnutls_x509_dn_oid_name’函数安全漏洞
Vulnerability Description
GnuTLS是比利时Nikos Mavrogiannopoulos和瑞典Simon Josefsson软件开发者共同研发的一个免费的用于实现SSL、TLS和DTLS协议的安全通信库。 GnuTLS 3.1.20之前的3.0版本和3.2.10之前的3.2.x版本的lib/x509/common.c文件中的‘gnutls_x509_dn_oid_name’函数存在安全漏洞。远程攻击者可借助特制的X.509证书利用该漏洞造成拒绝服务(空指针逆向引用)。
CVSS Information
N/A
Vulnerability Type
N/A