ELSA-2017-0574

ELSA-2017-0574 - gnutls security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2017-03-27

Description


[2.12.23-21]
- Upgraded to 2.12.23 to incorporate multiple TLS 1.2 fixes
(#1326389, #1326073, #1323215, #1320982, #1328205, #1321112)
- Modified gnutls-serv to accept --sni-hostname (#1333521)
- Modified gnutls-serv to always reply with an alert message (#1327656)
- Removed support for DSA2 as it causes interoperability issues (#1321112)
- Allow sending and receiving certificates which were not in the
signature algorithms extension (#1328205)
- Removed support for EXPORT ciphersuites (#1337460)
- Raised the minimum acceptable DH size to 1024 (#1335924)
- Restricted the number of alert that can be received during handshake (#1388730)
- Added fixes for OpenPGP parsing issues (CVE-2017-5337, CVE-2017-5336, CVE-2017-5335)
- The exposed (but internal) crypto back-end registration API is deprecated and no
longer functional. The ABI is kept compatible (#1415682)


Related CVEs


CVE-2016-8610
CVE-2017-5335
CVE-2017-5337
CVE-2017-5336

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) gnutls-2.12.23-21.el6.src.rpm85c951d58089a465891aaed133fe721aELBA-2018-1868
gnutls-2.12.23-21.el6.i686.rpm6d55998be88ff41c6c36969336fc1f71ELBA-2018-1868
gnutls-devel-2.12.23-21.el6.i686.rpm27f001cdb913badadb43f1e57a4ea53eELBA-2018-1868
gnutls-guile-2.12.23-21.el6.i686.rpmba88a98608d9a581f665a7caee6edc89ELBA-2018-1868
gnutls-utils-2.12.23-21.el6.i686.rpmd8eb823a81bd95e4d857d15e94f0e1b7ELBA-2018-1868
Oracle Linux 6 (x86_64) gnutls-2.12.23-21.el6.src.rpm85c951d58089a465891aaed133fe721aELBA-2018-1868
gnutls-2.12.23-21.el6.i686.rpm6d55998be88ff41c6c36969336fc1f71ELBA-2018-1868
gnutls-2.12.23-21.el6.x86_64.rpmaea4f2e09e91adf4379c4e32fcb3ed5dELBA-2018-1868
gnutls-devel-2.12.23-21.el6.i686.rpm27f001cdb913badadb43f1e57a4ea53eELBA-2018-1868
gnutls-devel-2.12.23-21.el6.x86_64.rpm06280669e794d845eaa09dfb749d13c6ELBA-2018-1868
gnutls-guile-2.12.23-21.el6.i686.rpmba88a98608d9a581f665a7caee6edc89ELBA-2018-1868
gnutls-guile-2.12.23-21.el6.x86_64.rpm449c73c37de0377f5b07075cfa06d80aELBA-2018-1868
gnutls-utils-2.12.23-21.el6.x86_64.rpm6d75114892a134fda1094e05c3bada3fELBA-2018-1868



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete