Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

SUSE 10 SP4 LTSS: SUSE-SU-2014:0321-1 Critical: GnuTLS Cert Error

suse
Calendar Grey March 4, 2014
Scroller Suse
SUSE Security Update: Update details for glibc Announcement ID:SUSE-SU-2023:0456-1 Severity:high
An update that solves one vulnerability and has one errata An update that solves one vulnerability and has one errata An update that solves one vulnerability and has one errata is ...

Summary

The GnuTLS library received a critical security fix and other updates: * CVE-2014-0092: The X.509 certificate verification had incorrect error handling, which could lead to broken certificates marked as being valid. * CVE-2009-5138: A verification problem in handling V1 certificates could also lead to V1 certificates incorrectly being handled. Security Issue references: * CVE-2014-0092 Package List: - SUSE Linux Enterprise Server 10 SP4 LTSS (i586 s390x x86_64): gnutls-1.2.10-13.38.1 gnutls-devel-1.2.10-13.38.1 - SUSE Linux Enterprise Server 10 SP4 LTSS (s390x x86_64): gnutls-32bit-1.2.10-13.38.1 gnutls-devel-32bit-1.2.10-13.38.1

References

#865804 #865993

Cross- CVE-2014-0092

Affected Products:

SUSE Linux Enterprise Server 10 SP4 LTSS

https://www.suse.com/security/cve/CVE-2014-0092.html

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2014:0321-1
Rating: critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.