[CLSA-2026:1780069034] gnutls: Fix of 8 CVEs
Type:
security
Severity:
Important
Release date:
2026-05-29 15:37:18 UTC
Description:
- CVE-2026-33846: DTLS handshake reassembly add more checks (buffers.c) - CVE-2026-42009: DTLS reorder qsort with duplicate sequence numbers - CVE-2026-42011: X.509 name constraints intersection of empty constraints - CVE-2026-42012: URI/SRV SAN preclude CN fallback - CVE-2026-42013: prevent fallback on oversized SAN - CVE-2026-42014: PKCS#11 token set_pin UAF + leak - CVE-2026-5260: PKCS#11 RSA short-ciphertext overread; ciphertext must match modulus size - CVE-2026-42015: PKCS#12 bag-element off-by-one bound check
Updated packages:
  • gnutls-3.6.16-4.el8.tuxcare.els12.i686.rpm
    sha:63a6f340a8d4d44820c0e7176364a00174e7fd63d9fe0af5ac75a9b5ad4f9ed0
  • gnutls-3.6.16-4.el8.tuxcare.els12.x86_64.rpm
    sha:a1155c4a54a593d726f8f380298a9f922ea5b01f6c3ceebd3dc8bd6737c5faf7
  • gnutls-c++-3.6.16-4.el8.tuxcare.els12.i686.rpm
    sha:4c02274bc12d7147bd2efafcd2a5394903af0ec76199e96c71ec8759ae4ec484
  • gnutls-c++-3.6.16-4.el8.tuxcare.els12.x86_64.rpm
    sha:0e1130ec8d4a9a311e8ed55b4592f8119c35145825ac7998773fa2d61478bbed
  • gnutls-dane-3.6.16-4.el8.tuxcare.els12.i686.rpm
    sha:68edfed39bcaab965f6b50a35816b599ed990d9ebe41bee8898b414e6ee170ed
  • gnutls-dane-3.6.16-4.el8.tuxcare.els12.x86_64.rpm
    sha:abf030dc0f575c011dea87391c6ddb27d7085b9260567879ac824838a667e10c
  • gnutls-devel-3.6.16-4.el8.tuxcare.els12.i686.rpm
    sha:c9d47e48beff4eea4d0cb32e62fc8bd5ecb1ca6731ecf5bdcf0f75295c62b751
  • gnutls-devel-3.6.16-4.el8.tuxcare.els12.x86_64.rpm
    sha:3709e076a57b235bc6ac6097a2a8e3bb8ba35006e16f50451e7291e33c1e33ab
  • gnutls-utils-3.6.16-4.el8.tuxcare.els12.x86_64.rpm
    sha:bff95cbb12046f21b8d8aa9605405a3bd26bbebe07c379424aa3412233130211
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.