gpp_maybe
Security update for gnutls
SUSE-SLE-Micro-5.4-2025-2589
This update for gnutls fixes the following issues: - CVE-2025-6395: Fix NULL pointer dereference when 2nd Client Hello omits PSK (bsc#1246299) - CVE-2025-32988: Fix double-free due to incorrect ownership handling in the export logic of SAN entries containing an otherName (bsc#1246232) - CVE-2025-32989: Fix heap buffer overread when handling the CT SCT extension during X.509 certificate parsing (bsc#1246233) - CVE-2025-32990: Fix 1-byte heap buffer overflow when parsing templates with certtool (bsc#1246267)
-
Release DateAug 1 2025
-
ReferencesBugzilla: 1246233, 1246232, 1246267, 1246299
CVEs: CVE-2025-6395, CVE-2025-32988, CVE-2025-32989, CVE-2025-32990 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Micro 5.4 s390x
-
Packagesgnutls
The GNU Transport Layer Security Librarylibgnutls303.7.3-150400.4.50.1 lock rpm lock src
The GNU Transport Layer Security Librarylibgnutls30-hmac3.7.3-150400.4.50.1 lock rpm
Checksums of the GNU Transport Layer Security Library3.7.3-150400.4.50.1 lock rpm
SUSE Linux Enterprise Micro 5.4 aarch64
-
Packagesgnutls
The GNU Transport Layer Security Librarylibgnutls303.7.3-150400.4.50.1 lock rpm lock src
The GNU Transport Layer Security Librarylibgnutls30-hmac3.7.3-150400.4.50.1 lock rpm
Checksums of the GNU Transport Layer Security Library3.7.3-150400.4.50.1 lock rpm
SUSE Linux Enterprise Micro 5.4 x86_64
-
Packagesgnutls
The GNU Transport Layer Security Librarylibgnutls303.7.3-150400.4.50.1 lock rpm lock src
The GNU Transport Layer Security Librarylibgnutls30-hmac3.7.3-150400.4.50.1 lock rpm
Checksums of the GNU Transport Layer Security Library3.7.3-150400.4.50.1 lock rpm