CVE-2008-1949

CVSS V2 High 9.3 CVSS V3 None
Description
The _gnutls_recv_client_kx_message function in lib/gnutls_kx.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 continues to process Client Hello messages within a TLS message after one has already been processed, which allows remote attackers to cause a denial of service (NULL dereference and crash) via a TLS message containing multiple Client Hello messages, aka GNUTLS-SA-2008-1-2.
Overview
  • CVE ID
  • CVE-2008-1949
  • Assigner
  • secalert@redhat.com
  • Vulnerability Status
  • Modified
  • Published Version
  • 2008-05-21T13:24:00
  • Last Modified Date
  • 2018-10-11T20:38:19
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:gnu:gnutls:1.0.18:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.0.19:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.0.20:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.0.21:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.0.22:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.0.23:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.0.24:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.0.25:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.13:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.14:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.15:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.16:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.17:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.18:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.19:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.20:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.21:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.22:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.1.23:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.2.11:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.3.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.3.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.3.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.3.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.3.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.3.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.4.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.4.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.4.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.4.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.4.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.4.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.5.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.5.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.5.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.5.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.5.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.5.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.6.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.6.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.6.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.6.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.11:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.12:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.13:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.14:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.15:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.16:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.17:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.18:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:1.7.19:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.0.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.0.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.0.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.0.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.0.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.1.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.2.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.2.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.2.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.2.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.2.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.2.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.0:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.3:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.4:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.5:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.6:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.7:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.8:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.9:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.10:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:gnu:gnutls:2.3.11:*:*:*:*:*:*:* 1 OR
CVSS Version 2
  • Version
  • 2.0
  • Vector String
  • AV:N/AC:M/Au:N/C:C/I:C/A:C
  • Access Vector
  • NETWORK
  • Access Compatibility
  • MEDIUM
  • Authentication
  • NONE
  • Confidentiality Impact
  • COMPLETE
  • Integrity Impact
  • COMPLETE
  • Availability Impact
  • COMPLETE
  • Base Score
  • 9.3
  • Severity
  • HIGH
  • Exploitability Score
  • 8.6
  • Impact Score
  • 10
References
Reference URL Reference Tags
http://lists.gnu.org/archive/html/gnutls-devel/2008-05/msg00051.html
http://lists.gnu.org/archive/html/gnutls-devel/2008-05/msg00060.html
http://lists.gnu.org/archive/html/gnutls-devel/2008-05/msg00055.html
http://www.openwall.com/lists/oss-security/2008/05/20/1
http://www.openwall.com/lists/oss-security/2008/05/20/2
http://www.openwall.com/lists/oss-security/2008/05/20/3
http://www.cert.fi/haavoittuvuudet/advisory-gnutls.html Exploit
http://git.savannah.gnu.org/gitweb/?p=gnutls.git;a=commitdiff;h=bc8102405fda11ea00ca3b42acc4f4bce9d6e97b Exploit
http://www.redhat.com/support/errata/RHSA-2008-0489.html
http://www.redhat.com/support/errata/RHSA-2008-0492.html
http://www.securityfocus.com/bid/29292 Patch
http://sourceforge.net/project/shownotes.php?release_id=600646&group_id=21558
http://www.debian.org/security/2008/dsa-1581
https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00487.html
https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00590.html
https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00615.html
http://security.gentoo.org/glsa/glsa-200805-20.xml
http://www.mandriva.com/security/advisories?name=MDVSA-2008:106
http://www.ubuntu.com/usn/usn-613-1
http://www.securitytracker.com/id?1020058
http://secunia.com/advisories/30331 Vendor Advisory
http://secunia.com/advisories/30338 Vendor Advisory
http://secunia.com/advisories/30302 Vendor Advisory
http://secunia.com/advisories/30317 Vendor Advisory
http://secunia.com/advisories/30324 Vendor Advisory
http://secunia.com/advisories/30287 Vendor Advisory
http://secunia.com/advisories/30330 Vendor Advisory
http://www.kb.cert.org/vuls/id/252626 US Government Resource
http://secunia.com/advisories/31939
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00003.html
http://securityreason.com/securityalert/3902
http://secunia.com/advisories/30355
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0174
https://issues.rpath.com/browse/RPL-2552
http://www.vupen.com/english/advisories/2008/1583/references
http://www.vupen.com/english/advisories/2008/1582/references
https://exchange.xforce.ibmcloud.com/vulnerabilities/42530
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9519
http://www.securityfocus.com/archive/1/492464/100/0/threaded
http://www.securityfocus.com/archive/1/492282/100/0/threaded
History
Created Old Value New Value Data Type Notes
2022-05-10 18:29:07 Added to TrackCVE