[ALSA-2025:16115] Moderate: gnutls security, bug fix, and enhancement update
Type:
security
Severity:
moderate
Release date:
2025-09-18
Description:
The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS. Security Fix(es): * gnutls: Vulnerability in GnuTLS certtool template parsing (CVE-2025-32990) * gnutls: Vulnerability in GnuTLS SCT extension parsing (CVE-2025-32989) * gnutls: Vulnerability in GnuTLS otherName SAN export (CVE-2025-32988) * gnutls: NULL pointer dereference in _gnutls_figure_common_ciphersuite() (CVE-2025-6395) Bug Fix(es) and Enhancement(s): * gnutls: Vulnerability in GnuTLS certtool template parsing (BZ#2359620) * gnutls: Vulnerability in GnuTLS SCT extension parsing (BZ#2359621) * gnutls: Vulnerability in GnuTLS otherName SAN export (BZ#2359622) * gnutls: NULL pointer dereference in _gnutls_figure_common_ciphersuite() (BZ#2376755) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 gnutls-fips-3.8.9-9.el10_0.14.aarch64.rpm 1567a9a6159d9df2123ac962bf98ab775e02a77dfa0a3a4c3a456692492db1e0
aarch64 gnutls-dane-3.8.9-9.el10_0.14.aarch64.rpm 4641bd6a315e682d723870cf20aedfc6b5b0fe64e899087655e6b0e85c9161fa
aarch64 gnutls-devel-3.8.9-9.el10_0.14.aarch64.rpm 620ffbcca116fd769bca7a04cf9e477734bb3e7a5105c324f8fc684e2418e52e
aarch64 gnutls-c++-3.8.9-9.el10_0.14.aarch64.rpm 6a8e134ff651cde22089738b3f98081abfb218004b516862e117bae6680a41c5
aarch64 gnutls-3.8.9-9.el10_0.14.aarch64.rpm 9ef6650a67b05089682806e1c01e9b8548e3e9ecc25e44acc12e4ba865457565
aarch64 gnutls-utils-3.8.9-9.el10_0.14.aarch64.rpm be396d666efbe188c4d89682341bca4f5c22d9ae1a299d8d7e4810f7cd873cc3
ppc64le gnutls-c++-3.8.9-9.el10_0.14.ppc64le.rpm 2246e7729c2fa9eeb40d9199dc717b6a47639e62132d22f06f1d4ec9f414d51f
ppc64le gnutls-devel-3.8.9-9.el10_0.14.ppc64le.rpm 57ed9272c8010e05a33f8a4992fd051c29fa99374d3137d8870b4002fe4c79f4
ppc64le gnutls-dane-3.8.9-9.el10_0.14.ppc64le.rpm 77c8182c41d816a349e32008e6225b69095e2ebeded716b96de47c623c0b9fa3
ppc64le gnutls-utils-3.8.9-9.el10_0.14.ppc64le.rpm d4fae02d27a3b74db8ee3f7383bb4a01ef1c8ef544d9437ad7df1212a1e577ff
ppc64le gnutls-fips-3.8.9-9.el10_0.14.ppc64le.rpm e8f87aa8e7c334b9bcd6a7745a9dacc75e0a31db0c7aca34850611fc1274310b
ppc64le gnutls-3.8.9-9.el10_0.14.ppc64le.rpm f77b75f7d4aa8d2f0c82c457ef39f16ac875ce33f0c573977afcce441a85fc68
s390x gnutls-dane-3.8.9-9.el10_0.14.s390x.rpm 0a9ddbc020ee87ab62b8e5b50309025ec94b1c1b195bc2a977bfd1cf6671f278
s390x gnutls-devel-3.8.9-9.el10_0.14.s390x.rpm 4059c4fae0bbf5148e5c2bb2812b0856bb8cbaad21c11fc3bf8f8053b28a3cab
s390x gnutls-utils-3.8.9-9.el10_0.14.s390x.rpm 7cc595f69c118c08596ad55b7170bef8ae5fb9a220a4f8bc83a7b054127610d8
s390x gnutls-c++-3.8.9-9.el10_0.14.s390x.rpm a42e9dca6cd843d0f37ab994c43dde3ecd616f368b7c32ca86d873341682014d
s390x gnutls-fips-3.8.9-9.el10_0.14.s390x.rpm b97c234dcdbfba6da2a60f092dc5366da91af353d340fcecd519dd9308a29cd3
s390x gnutls-3.8.9-9.el10_0.14.s390x.rpm b9dcbce3bc56fe4a591861f07acd358de6e7937b4bd1c3167a2939ee4c559c59
x86_64 gnutls-devel-3.8.9-9.el10_0.14.x86_64.rpm 1823620e49f121f912be5a2237e1fc6efd88b8ce1b5942cef378abd5251d59d2
x86_64 gnutls-dane-3.8.9-9.el10_0.14.x86_64.rpm 1aa49f12f5bdec5a0bea924fedba500ce0d29cbfc9fcbeaa4007ff0357b08488
x86_64 gnutls-3.8.9-9.el10_0.14.x86_64.rpm 24597a2dcb5989daa48f06e8c4a126653ab532d703bef0d9b8b115064e5a7664
x86_64 gnutls-utils-3.8.9-9.el10_0.14.x86_64.rpm 7810e57f7498ca33e97c9ac8f78f66c857607ecd564e77baf02acc7785bded95
x86_64 gnutls-c++-3.8.9-9.el10_0.14.x86_64.rpm c445f250f83bd29d9c22c059aa0c3c13c597841ea27c85bae0054c4522328e7c
x86_64 gnutls-fips-3.8.9-9.el10_0.14.x86_64.rpm c59e9a3762baa6097b32fa895042aa0ae2fa501df4f5d8aab8b5da5e66cfd4f2
x86_64_v2 gnutls-c++-3.8.9-9.el10_0.14.x86_64_v2.rpm 211d6a9bfb399bbf85c96ecb36fd2d4a49cb1023b5bce96942b9de75fdc01730
x86_64_v2 gnutls-utils-3.8.9-9.el10_0.14.x86_64_v2.rpm 7cf0611dcf1920e97c97c8df2387b72d10dc066ccf3a1b8beb48393bfaf9a19d
x86_64_v2 gnutls-devel-3.8.9-9.el10_0.14.x86_64_v2.rpm b45d7b48942fa423fa2ab542af892798a658cd4110024600d72276795b85f1de
x86_64_v2 gnutls-fips-3.8.9-9.el10_0.14.x86_64_v2.rpm c16b09f98843719af018143e61e4e3a6b5c801db27185b57135ceec8ad968758
x86_64_v2 gnutls-3.8.9-9.el10_0.14.x86_64_v2.rpm d22a2cc124b117ccd1b4f381a1c3713b0b8033cf9853d0d848b90b200d3d427a
x86_64_v2 gnutls-dane-3.8.9-9.el10_0.14.x86_64_v2.rpm dabe94a9ed2b17e6f2bc4174b0f34edcabe876a4904ecca4b117f4cd76db5885
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.