CVE-2014-3466

EPSS 13.7%

gnutls26 - security update

Published: 6/3/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2014-3466

Description

Buffer overflow in the read_server_hello function in lib/gnutls_handshake.c in GnuTLS before 3.1.25, 3.2.x before 3.2.15, and 3.3.x before 3.3.4 allows remote servers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a long session id in a ServerHello message.

Affected packages (3)

References (1)