UbuntuUpdates.org

Package "libgnutls-openssl27t64"

Name: libgnutls-openssl27t64

Description:

GNU TLS library - OpenSSL wrapper

Latest version: 3.8.9-3ubuntu2.1
Release: questing (25.10)
Level: security
Repository: main
Head package: gnutls28
Homepage: https://www.gnutls.org/

Links


Download "libgnutls-openssl27t64"


Other versions of "libgnutls-openssl27t64" in Questing

Repository Area Version
base main 3.8.9-3ubuntu2
updates main 3.8.9-3ubuntu2.1

Changelog

Version: 3.8.9-3ubuntu2.1 2026-02-16 16:07:57 UTC

  gnutls28 (3.8.9-3ubuntu2.1) questing-security; urgency=medium

  * SECURITY UPDATE: DoS via malicious certificates
    - debian/patches/CVE-2025-14831-*.patch: rework processing algorithms
      to exhibit better performance characteristics in
      lib/x509/name_constraints.c, tests/name-constraints-ip.c.
    - CVE-2025-14831
  * SECURITY UPDATE: stack overflow via long token label
    - debian/patches/CVE-2025-9820.patch: avoid stack overwrite when
      initializing a token in lib/pkcs11_write.c, tests/Makefile.am,
      tests/pkcs11/long-label.c.
    - CVE-2025-9820

 -- Marc Deslauriers <email address hidden> Tue, 10 Feb 2026 09:22:00 -0500

CVE-2025-14831 A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via
CVE-2025-9820 A flaw was found in the GnuTLS library, specifically in the gnutls_pkcs11_token_init() function that handles PKCS#11 token initialization. When a tok



About   -   Send Feedback to @ubuntu_updates