[Bug 1172461] gnutls fails to verify certificate chains that contain an expired cross-signed intermediate in alternate chains
http://bugzilla.suse.com/show_bug.cgi?id=1172461 http://bugzilla.suse.com/show_bug.cgi?id=1172461#c5 --- Comment #5 from Swamp Workflow Management <swamp@suse.de> --- SUSE-SU-2020:1584-1: An update that solves one vulnerability and has one errata is now available. Category: security (important) Bug References: 1172461,1172506 CVE References: CVE-2020-13777 Sources used: SUSE Linux Enterprise Server for SAP 15 (src): gnutls-3.6.7-6.29.1 SUSE Linux Enterprise Server 15-LTSS (src): gnutls-3.6.7-6.29.1 SUSE Linux Enterprise Module for Basesystem 15-SP2 (src): gnutls-3.6.7-6.29.1 SUSE Linux Enterprise Module for Basesystem 15-SP1 (src): gnutls-3.6.7-6.29.1 SUSE Linux Enterprise High Performance Computing 15-LTSS (src): gnutls-3.6.7-6.29.1 SUSE Linux Enterprise High Performance Computing 15-ESPOS (src): gnutls-3.6.7-6.29.1 NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination. -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com