Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Mageia 7: MGASA-2020-0168 Critical Gnutls DTLS Protocol Flaw Advisory

mageia
Calendar Grey April 15, 2020
Dist Mageia Esm H88
A recent update for GnuTLS fixes a vulnerability in the DTLS protocol that impacts Mageia 7, identified as CVE-2020-11501. More information is available within.

Updated gnutls packages fix security vulnerability: A flaw was reported in the DTLS protocol implementation in GnuTLS

Summary

Updated gnutls packages fix security vulnerability:
A flaw was reported in the DTLS protocol implementation in GnuTLS. The DTLS client would not contribute any randomness to the DTLS negotiation, breaking the security guarantees of the DTLS protocol (CVE-2020-11501).

References

- https://bugs.mageia.org/show_bug.cgi?id=26444

- https://lists.debian.org/debian-security-announce/2020/msg00055.html

- https://www.cve.org/CVERecord?id=CVE-2020-11501

Resolution

SRPMS

- 7/core/gnutls-3.6.7-1.1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 15 Apr 2020
URL: https://advisories.mageia.org/MGASA-2020-0168.html
Type: security
CVE: CVE-2020-11501

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here