[CLSA-2026:1779827686] gnutls: Fix of CVE-2026-3833
Type:
security
Severity:
Important
Release date:
2026-05-26 20:35:17 UTC
Description:
- CVE-2026-3833: fix case-sensitive DNS name comparison in x509 name constraints processing that allowed case-variant domain names to bypass excluded constraints, by using c_strncasecmp for case-insensitive match
Updated packages:
  • gnutls-3.8.3-9.el9_6.tuxcare.1.els5.i686.rpm
    sha:a2c875f37e830cb8d98715b485fee83ba915de94bc1ebc46cfaffe86d71ba838
  • gnutls-3.8.3-9.el9_6.tuxcare.1.els5.x86_64.rpm
    sha:305aaa9d7e47f8653b9cf238203904eccd66ad898d28c6cab095704621a72237
  • gnutls-c++-3.8.3-9.el9_6.tuxcare.1.els5.i686.rpm
    sha:32854ee415bc5ce7ad50dd0ab527cd49198eae14a0e8b1907da03db9bbc7c07b
  • gnutls-c++-3.8.3-9.el9_6.tuxcare.1.els5.x86_64.rpm
    sha:8ab119beb3f7c4aaa23e4407f585c73050335d07388cb0c131678d705d20146c
  • gnutls-dane-3.8.3-9.el9_6.tuxcare.1.els5.i686.rpm
    sha:2145cc4aa0e4fcfe8a51d726711566e82ba182b261916a6dda40c4571382144c
  • gnutls-dane-3.8.3-9.el9_6.tuxcare.1.els5.x86_64.rpm
    sha:2f0cc352b71e0fea856001fe3528661e6af7a45d64a380d3da2320f2c9b40651
  • gnutls-devel-3.8.3-9.el9_6.tuxcare.1.els5.i686.rpm
    sha:1930051daaa5a764a31f75f762c9904334222b4321a1e31d5e9e2c870c037841
  • gnutls-devel-3.8.3-9.el9_6.tuxcare.1.els5.x86_64.rpm
    sha:54e6204869cf211fc12a981b9ce6470ca83e1bb5ce97d881cdd13f3b32aca0c6
  • gnutls-utils-3.8.3-9.el9_6.tuxcare.1.els5.x86_64.rpm
    sha:d1f0c1a32b823954f58f479bbcf0eb7660a595f02fbdaa088f9c45d181a0e4eb
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.