CVE-2025-14831
A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of name constraints and subject alternative names (SANs).
Vendor
-
Product
-
CWE
Yayın Tarihi
2026-02-09 15:16:09
Güncelleme
2026-04-07 12:16:20
Source Identifier
secalert@redhat.com
KEV Date Added
-
Kategoriler
Referanslar
https://access.redhat.com/errata/RHSA-2026:3477
https://access.redhat.com/errata/RHSA-2026:4188
https://access.redhat.com/errata/RHSA-2026:4655
https://access.redhat.com/errata/RHSA-2026:4943
https://access.redhat.com/errata/RHSA-2026:5585
https://access.redhat.com/errata/RHSA-2026:5606
https://access.redhat.com/errata/RHSA-2026:6618
https://access.redhat.com/errata/RHSA-2026:6630
https://access.redhat.com/errata/RHSA-2026:6737
https://access.redhat.com/errata/RHSA-2026:6738
https://access.redhat.com/security/cve/CVE-2025-14831
https://bugzilla.redhat.com/show_bug.cgi?id=2423177
https://gitlab.com/gnutls/gnutls/-/issues/1773