oval:org.mitre.oval:def:10935

Definition Id: oval:org.mitre.oval:def:10935
 
Oval ID: oval:org.mitre.oval:def:10935
Title: The _gnutls_server_name_recv_params function in lib/ext_server_name.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 does not properly calculate the number of Server Names in a TLS 1.0 Client Hello message during extension handling, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a zero value for the length of Server Names, which leads to a buffer overflow in session resumption data in the pack_security_parameters function, aka GNUTLS-SA-2008-1-1.
Description: The _gnutls_server_name_recv_params function in lib/ext_server_name.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 does not properly calculate the number of Server Names in a TLS 1.0 Client Hello message during extension handling, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a zero value for the length of Server Names, which leads to a buffer overflow in session resumption data in the pack_security_parameters function, aka GNUTLS-SA-2008-1-1.
Family: unix Class: vulnerability
Reference(s): CVE-2008-1948
Version: 5
Platform(s): Red Hat Enterprise Linux 4
CentOS Linux 4
Oracle Linux 4
Red Hat Enterprise Linux 5
CentOS Linux 5
Oracle Linux 5
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:16636
 
Oval ID: oval:org.mitre.oval:def:16636
Title: CentOS Linux 4.x
Description: The operating system installed on the system is CentOS Linux 4.x
Family: unix Class: inventory
Reference(s): cpe:/o:centos:centos:4
Version: 3
Platform(s): CentOS Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10935
Definition Id: oval:org.mitre.oval:def:15990
 
Oval ID: oval:org.mitre.oval:def:15990
Title: Oracle Linux 4.x
Description: The operating system installed on the system is Oracle Linux 4.x
Family: unix Class: inventory
Reference(s): cpe:/o:oracle:linux:4
Version: 5
Platform(s): Oracle Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10935
Definition Id: oval:org.mitre.oval:def:11414
 
Oval ID: oval:org.mitre.oval:def:11414
Title: The operating system installed on the system is Red Hat Enterprise Linux 5
Description: The operating system installed on the system is Red Hat Enterprise Linux 5.
Family: unix Class: inventory
Reference(s): cpe:/o:redhat:enterprise_linux:5
Version: 7
Platform(s): Red Hat Enterprise Linux 5
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10935
Definition Id: oval:org.mitre.oval:def:15802
 
Oval ID: oval:org.mitre.oval:def:15802
Title: The operating system installed on the system is CentOS Linux 5.x
Description: The operating system installed on the system is CentOS Linux 5.x
Family: unix Class: inventory
Reference(s): cpe:/o:centos:centos:5
Version: 7
Platform(s): CentOS Linux 5
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10935
Definition Id: oval:org.mitre.oval:def:15459
 
Oval ID: oval:org.mitre.oval:def:15459
Title: Oracle Linux 5.x
Description: The operating system installed on the system is Oracle Linux 5.x
Family: unix Class: inventory
Reference(s): cpe:/o:oracle:linux:5
Version: 7
Platform(s): Oracle Linux 5
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10935
Definition Id: oval:org.mitre.oval:def:11831
 
Oval ID: oval:org.mitre.oval:def:11831
Title: The operating system installed on the system is Red Hat Enterprise Linux 4
Description: The operating system installed on the system is Red Hat Enterprise Linux 4.
Family: unix Class: inventory
Reference(s): cpe:/o:redhat:enterprise_linux:4
Version: 7
Platform(s): Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10935