gpp_maybe
Security update for gnutls
SUSE-SLE-Micro-6.1-243
This update for gnutls fixes the following issues: - CVE-2025-32988: Fixed double-free due to incorrect ownership handling in the export logic of SAN entries containing an otherName (bsc#1246232). - CVE-2025-32989: Fixed heap buffer overread when handling the CT SCT extension during X.509 certificate parsing (bsc#1246233). - CVE-2025-32990: Fixed 1-byte heap buffer overflow when parsing templates with certtool (bsc#1246267). - CVE-2025-6395: Fixed NULL pointer dereference when 2nd Client Hello omits PSK (bsc#1246299).
-
Release DateAug 29 2025
-
ReferencesBugzilla: 1246232, 1246233, 1246267, 1246299
CVEs: CVE-2025-6395, CVE-2025-32988, CVE-2025-32989, CVE-2025-32990 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Micro 6.1 s390x
-
Packagesgnutls
The GNU Transport Layer Security Librarylibgnutls303.8.3-slfo.1.1_4.1 lock rpm
The GNU Transport Layer Security Library3.8.3-slfo.1.1_4.1 lock rpm
SUSE Linux Micro 6.1 ppc64le
-
Packagesgnutls
The GNU Transport Layer Security Librarylibgnutls303.8.3-slfo.1.1_4.1 lock rpm
The GNU Transport Layer Security Library3.8.3-slfo.1.1_4.1 lock rpm
SUSE Linux Micro 6.1 aarch64
-
Packagesgnutls
The GNU Transport Layer Security Librarylibgnutls303.8.3-slfo.1.1_4.1 lock rpm
The GNU Transport Layer Security Library3.8.3-slfo.1.1_4.1 lock rpm
SUSE Linux Micro 6.1 x86_64
-
Packagesgnutls
The GNU Transport Layer Security Librarylibgnutls303.8.3-slfo.1.1_4.1 lock rpm
The GNU Transport Layer Security Library3.8.3-slfo.1.1_4.1 lock rpm