ID:4449 - Exploit for Resource management error in GnuTLS - CVE-2012-1663

 
Main Vulnerability Database Exploits ID:4449 - Exploit for Resource management error in GnuTLS - CVE-2012-1663

ID:4449 - Exploit for Resource management error in GnuTLS - CVE-2012-1663

Published: August 11, 2020


Vulnerability identifier: #VU44203
Vulnerability risk: Medium
CVE-ID: CVE-2012-1663
CWE-ID: CWE-399
Exploitation vector: Remote access
Vulnerable software:
GnuTLS

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to read and manipulate data.

Double free vulnerability in libgnutls in GnuTLS before 3.0.14 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted certificate list.


Remediation

Install update from vendor's website.