Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-3829

A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in the certificate verification API. Any client or server application that verifies X.509 certificates with GnuTLS 3.5.8 or later is affected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.026
EPSS Ranking 84.7%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
References
Products affected by CVE-2019-3829
  • Gnu » Gnutls » Version: 3.5.10
    cpe:2.3:a:gnu:gnutls:3.5.10
  • Gnu » Gnutls » Version: 3.5.11
    cpe:2.3:a:gnu:gnutls:3.5.11
  • Gnu » Gnutls » Version: 3.5.12
    cpe:2.3:a:gnu:gnutls:3.5.12
  • Gnu » Gnutls » Version: 3.5.13
    cpe:2.3:a:gnu:gnutls:3.5.13
  • Gnu » Gnutls » Version: 3.5.14
    cpe:2.3:a:gnu:gnutls:3.5.14
  • Gnu » Gnutls » Version: 3.5.15
    cpe:2.3:a:gnu:gnutls:3.5.15
  • Gnu » Gnutls » Version: 3.5.16
    cpe:2.3:a:gnu:gnutls:3.5.16
  • Gnu » Gnutls » Version: 3.5.17
    cpe:2.3:a:gnu:gnutls:3.5.17
  • Gnu » Gnutls » Version: 3.5.18
    cpe:2.3:a:gnu:gnutls:3.5.18
  • Gnu » Gnutls » Version: 3.5.19
    cpe:2.3:a:gnu:gnutls:3.5.19
  • Gnu » Gnutls » Version: 3.5.8
    cpe:2.3:a:gnu:gnutls:3.5.8
  • Gnu » Gnutls » Version: 3.5.9
    cpe:2.3:a:gnu:gnutls:3.5.9
  • Gnu » Gnutls » Version: 3.6.0
    cpe:2.3:a:gnu:gnutls:3.6.0
  • Gnu » Gnutls » Version: 3.6.1
    cpe:2.3:a:gnu:gnutls:3.6.1
  • Gnu » Gnutls » Version: 3.6.2
    cpe:2.3:a:gnu:gnutls:3.6.2
  • Gnu » Gnutls » Version: 3.6.3
    cpe:2.3:a:gnu:gnutls:3.6.3
  • Gnu » Gnutls » Version: 3.6.4
    cpe:2.3:a:gnu:gnutls:3.6.4
  • Gnu » Gnutls » Version: 3.6.5
    cpe:2.3:a:gnu:gnutls:3.6.5
  • Gnu » Gnutls » Version: 3.6.6
    cpe:2.3:a:gnu:gnutls:3.6.6
  • Fedoraproject » Fedora » Version: N/A
    cpe:2.3:o:fedoraproject:fedora:-


Contact Us

Shodan ® - All rights reserved