6.5
CVSSv3

CVE-2021-4209

Published: 24/08/2022 Updated: 27/10/2022
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-length input may cause undefined behavior. This flaw leads to a denial of service after authentication in rare circumstances.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu gnutls

redhat enterprise linux 8.0

netapp solidfire \\& hci management node -

netapp active iq unified manager -

netapp hci_bootstrap_os -

Vendor Advisories

Several security issues were fixed in GnuTLS ...