A flaw has been discovered in GnuTLS where an application crash can be induced when attempting to verify a specially crafted .pem bundle using the "certtool --verify-chain" command.
                
            Metrics
Affected Vendors & Products
References
        History
                    Wed, 21 May 2025 15:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:/o:redhat:enterprise_linux:10 | 
Fri, 22 Nov 2024 13:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
         | 
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
         | 
Wed, 06 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
         | 
|
| Metrics | 
        
        ssvc
         
  | 
Mon, 19 Aug 2024 16:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
    
Status: PUBLISHED
Assigner: redhat
Published: 2024-03-21T06:13:26.916Z
Updated: 2025-08-30T13:38:33.685Z
Reserved: 2024-03-11T14:43:43.973Z
Link: CVE-2024-28835
Updated: 2024-11-22T12:04:48.736Z
Status : Awaiting Analysis
Published: 2024-03-21T06:15:45.113
Modified: 2024-11-22T12:15:18.570
Link: CVE-2024-28835