A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of name constraints and subject alternative names (SANs).
| Vendor | Product | Versions |
|---|---|---|
| red hat | red hat enterprise linux | — |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| canonical | ubuntu linux | cert_advisory | 90% |
| debian | debian linux | cert_advisory | 90% |
| fedora | fedora linux | cert_advisory | 90% |
| open source | gnutls | cert_advisory | 90% |
| oracle | oracle linux | cert_advisory | 90% |