gnutls: buffer overflow in gnutls_session_get_data() (GNUTLS-SA-2011-2)
Published Dec 8, 2011
4.3
MEDIUMCVSS 2.0
EPSS 2.30%
Description
Buffer overflow in the gnutls_session_get_data function in lib/gnutls_session.c in GnuTLS 2.12.x before 2.12.14 and 3.x before 3.0.7, when used on a client that performs nonstandard session resumption, allows remote TLS servers to cause a denial of service (application crash) via a large SessionTicket.
Affected products
No data.
Configuration 1
- 2.12.0
- 2.12.1
- 2.12.2
- 2.12.3
- 2.12.4
- 2.12.5
- 2.12.6
- 2.12.6.1
- 2.12.7
- 2.12.8
- 2.12.9
- 2.12.10
- 2.12.11
- 2.12.12
- 2.12.13
No data.
Red Hat Enterprise Linux 5
gnutls-0:1.4.1-7.el5_8.2
Fixed · RHSA-2012:0428
Red Hat Enterprise Linux 6
gnutls-0:2.8.5-4.el6_2.2
Fixed · RHSA-2012:0429
Red Hat Enterprise Linux 4
gnutls
Not affected
Red Hat Enterprise Linux 6
mingw32-gnutls
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | gnutls-0:1.4.1-7.el5_8.2 | Fixed | RHSA-2012:0428 |
| Red Hat Enterprise Linux 6 | gnutls-0:2.8.5-4.el6_2.2 | Fixed | RHSA-2012:0429 |
| Red Hat Enterprise Linux 4 | gnutls | Not affected | n/a |
| Red Hat Enterprise Linux 6 | mingw32-gnutls | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue does not affect the version of gnutls as shipped with Red Hat Enterprise Linux 4.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:N/C:N/I:N/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (12 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 2.30% (0.02300) | 82.68th | v5 (v2026.06.15) |
| Jun 15, 2026 | 2.39% (0.02386) | 81.70th | v5 (v2026.06.15) |
| Mar 30, 2025 | 1.32% (0.01319) | 78.05th | v4 (v2025.03.14) |
| Mar 29, 2025 | 2.73% (0.02729) | 76.55th | v4 (v2025.03.14) |
| Mar 17, 2025 | 1.40% (0.01402) | 79.13th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.35% (0.00348) | 72.58th | v3 (v2023.03.01) |
| Feb 8, 2024 | 0.31% (0.00313) | 69.38th | v3 (v2023.03.01) |
| Jul 8, 2023 | 0.31% (0.00313) | 66.07th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.22% (0.00221) | 58.36th | v3 (v2023.03.01) |
| Mar 6, 2023 | 2.69% (0.02686) | 82.85th | v2 (v2022.01.01) |
| Apr 1, 2022 | 2.69% (0.02686) | 81.17th | v2 (v2022.01.01) |
| Feb 4, 2022 | 2.69% (0.02686) | 62.66th | v2 (v2022.01.01) |
References (18)
- http://article.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/5596 mailing-listx_refsource_MLIST
- http://git.savannah.gnu.org/gitweb/?p=gnutls.git%3Ba=commitdiff%3Bh=190cef6eed37d0e73a73c1e205eb31d45ab60a3c x_refsource_CONFIRM
- http://git.savannah.gnu.org/gitweb/?p=gnutls.git%3Ba=commitdiff%3Bh=e82ef4545e9e98cbcb032f55d7c750b81e3a0450 x_refsource_CONFIRM
- http://lists.fedoraproject.org/pipermail/package-announce/2012-April/077071.html vendor-advisoryx_refsource_FEDORA
- http://openwall.com/lists/oss-security/2011/11/09/2 mailing-listx_refsource_MLIST
- http://openwall.com/lists/oss-security/2011/11/09/4 mailing-listx_refsource_MLIST
- http://rhn.redhat.com/errata/RHSA-2012-0429.html vendor-advisoryx_refsource_REDHAT
- http://rhn.redhat.com/errata/RHSA-2012-0488.html vendor-advisoryx_refsource_REDHAT
- http://rhn.redhat.com/errata/RHSA-2012-0531.html vendor-advisoryx_refsource_REDHAT
- http://secunia.com/advisories/48596 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/48712 third-party-advisoryx_refsource_SECUNIA
- http://www.gnu.org/software/gnutls/security.html x_refsource_CONFIRM
- http://www.mandriva.com/security/advisories?name=MDVSA-2012:045 vendor-advisoryx_refsource_MANDRIVA
- http://www.ubuntu.com/usn/USN-1418-1 vendor-advisoryx_refsource_UBUNTU
- https://access.redhat.com/security/cve/CVE-2011-4128 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=752308 x_refsource_CONFIRMIssue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2011-4128
- https://www.cve.org/CVERecord?id=CVE-2011-4128
Change history (0)
No recorded changes yet.