Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-3836

It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versions 3.6.3 or later which can be triggered by certain post-handshake messages.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.1%
CVSS Severity
CVSS v3 Score 5.9
CVSS v2 Score 5.0
References
Products affected by CVE-2019-3836
  • Gnu » Gnutls » Version: 3.6.3
    cpe:2.3:a:gnu:gnutls:3.6.3
  • Gnu » Gnutls » Version: 3.6.4
    cpe:2.3:a:gnu:gnutls:3.6.4
  • Gnu » Gnutls » Version: 3.6.5
    cpe:2.3:a:gnu:gnutls:3.6.5
  • Gnu » Gnutls » Version: 3.6.6
    cpe:2.3:a:gnu:gnutls:3.6.6
  • Fedoraproject » Fedora » Version: 28
    cpe:2.3:o:fedoraproject:fedora:28
  • Opensuse » Leap » Version: 15.0
    cpe:2.3:o:opensuse:leap:15.0


Contact Us

Shodan ® - All rights reserved