#VU18106 Buffer overflow in GnuTLS - CVE-2019-3836
Published: April 1, 2019
GnuTLS
GnuTLS
Description
The vulnerability allows a remote attacker to perform denial of service attack.
The vulnerability exists due to uninitialized pointer access when processing TLS1.3 asynchronous messages. A remote attacker can pass specially crafted asynchronous post-handshake message, trigger memory corruption and perform denial of service attack.