Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-0567

A vulnerability was found in GnuTLS, where a cockpit (which uses gnuTLS) rejects a certificate chain with distributed trust. This issue occurs when validating a certificate chain with cockpit-certificate-ensure. This flaw allows an unauthenticated, remote client or attacker to initiate a denial of service attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 76.8%
CVSS Severity
CVSS v3 Score 7.5
References
Products affected by CVE-2024-0567
  • Gnu » Gnutls » Version: 3.7.0
    cpe:2.3:a:gnu:gnutls:3.7.0
  • Gnu » Gnutls » Version: 3.7.1
    cpe:2.3:a:gnu:gnutls:3.7.1
  • Gnu » Gnutls » Version: 3.7.10
    cpe:2.3:a:gnu:gnutls:3.7.10
  • Gnu » Gnutls » Version: 3.7.2
    cpe:2.3:a:gnu:gnutls:3.7.2
  • Gnu » Gnutls » Version: 3.7.3
    cpe:2.3:a:gnu:gnutls:3.7.3
  • Gnu » Gnutls » Version: 3.7.4
    cpe:2.3:a:gnu:gnutls:3.7.4
  • Gnu » Gnutls » Version: 3.7.5
    cpe:2.3:a:gnu:gnutls:3.7.5
  • Gnu » Gnutls » Version: 3.7.6
    cpe:2.3:a:gnu:gnutls:3.7.6
  • Gnu » Gnutls » Version: 3.7.7
    cpe:2.3:a:gnu:gnutls:3.7.7
  • Gnu » Gnutls » Version: 3.7.8
    cpe:2.3:a:gnu:gnutls:3.7.8
  • Gnu » Gnutls » Version: 3.7.9
    cpe:2.3:a:gnu:gnutls:3.7.9
  • Gnu » Gnutls » Version: 3.8.0
    cpe:2.3:a:gnu:gnutls:3.8.0
  • Gnu » Gnutls » Version: 3.8.1
    cpe:2.3:a:gnu:gnutls:3.8.1
  • Gnu » Gnutls » Version: 3.8.2
    cpe:2.3:a:gnu:gnutls:3.8.2
  • Netapp » Active Iq Unified Manager » Version: N/A
    cpe:2.3:a:netapp:active_iq_unified_manager:-
  • Debian » Debian Linux » Version: 11.0
    cpe:2.3:o:debian:debian_linux:11.0
  • Fedoraproject » Fedora » Version: 38
    cpe:2.3:o:fedoraproject:fedora:38
  • Fedoraproject » Fedora » Version: 39
    cpe:2.3:o:fedoraproject:fedora:39


Contact Us

Shodan ® - All rights reserved