296,172
Total vulnerabilities in the database
lib/x509/verify.c in GnuTLS before 3.1.21 and 3.2.x before 3.2.11 treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates.
Software | From | Fixed in |
---|---|---|
gnu / gnutls | 3.1.0 | 3.1.0.x |
gnu / gnutls | 3.1.11 | 3.1.11.x |
gnu / gnutls | 3.1.13 | 3.1.13.x |
gnu / gnutls | 3.1.19 | 3.1.19.x |
gnu / gnutls | 3.1.18 | 3.1.18.x |
gnu / gnutls | 3.1.5 | 3.1.5.x |
gnu / gnutls | 3.1.15 | 3.1.15.x |
gnu / gnutls | 3.1.4 | 3.1.4.x |
gnu / gnutls | 3.1.8 | 3.1.8.x |
gnu / gnutls | 3.1.16 | 3.1.16.x |
gnu / gnutls | 3.1.1 | 3.1.1.x |
gnu / gnutls | 3.1.17 | 3.1.17.x |
gnu / gnutls | 3.1.12 | 3.1.12.x |
gnu / gnutls | 3.1.10 | 3.1.10.x |
gnu / gnutls | 3.1.7 | 3.1.7.x |
gnu / gnutls | 3.1.2 | 3.1.2.x |
gnu / gnutls | 3.1.14 | 3.1.14.x |
gnu / gnutls | - | 3.1.20.x |
gnu / gnutls | 3.1.3 | 3.1.3.x |
gnu / gnutls | 3.1.6 | 3.1.6.x |
gnu / gnutls | 3.1.9 | 3.1.9.x |
gnu / gnutls | 3.2.3 | 3.2.3.x |
gnu / gnutls | 3.2.0 | 3.2.0.x |
gnu / gnutls | 3.2.1 | 3.2.1.x |
gnu / gnutls | 3.2.8 | 3.2.8.x |
gnu / gnutls | 3.2.4 | 3.2.4.x |
gnu / gnutls | 3.2.9 | 3.2.9.x |
gnu / gnutls | 3.2.6 | 3.2.6.x |
gnu / gnutls | - | 3.2.10.x |
gnu / gnutls | 3.2.7 | 3.2.7.x |
gnu / gnutls | 3.2.2 | 3.2.2.x |
gnu / gnutls | 3.2.5 | 3.2.5.x |
gnu / gnutls | 3.2.8.1 | 3.2.8.1.x |