[Apollo] Advisories Statistics light light Login

RLSA-2025:17415

Security Mirrored from RHSA-2025:17415
Issued at: 2025-10-08
Updated at: 2025-10-08

Synopsis

Moderate: gnutls security, bug fix, and enhancement update



Description

The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS.

Security Fix(es):

* gnutls: Vulnerability in GnuTLS certtool template parsing (CVE-2025-32990)

* gnutls: Vulnerability in GnuTLS otherName SAN export (CVE-2025-32988)

* gnutls: NULL pointer dereference in _gnutls_figure_common_ciphersuite() (CVE-2025-6395)

Bug Fix(es) and Enhancement(s):

* gnutls: Vulnerability in GnuTLS certtool template parsing (BZ#2359620)

* gnutls: Vulnerability in GnuTLS otherName SAN export (BZ#2359622)

* gnutls: NULL pointer dereference in _gnutls_figure_common_ciphersuite() (BZ#2376755)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 8 aarch64 Rocky Linux 8 x86_64

Fixes

2359620 2359622 2376755

CVEs

CVE-2025-32988 CVE-2025-32990 CVE-2025-6395

Affected packages

Rocky Linux 8 aarch64 - BaseOS

gnutls-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-0:3.6.16-8.el8_10.4.src.rpm gnutls-debuginfo-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-debugsource-0:3.6.16-8.el8_10.4.aarch64.rpm

Rocky Linux 8 x86_64 - BaseOS

gnutls-0:3.6.16-8.el8_10.4.i686.rpm gnutls-0:3.6.16-8.el8_10.4.src.rpm gnutls-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-debuginfo-0:3.6.16-8.el8_10.4.i686.rpm gnutls-debuginfo-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-debugsource-0:3.6.16-8.el8_10.4.i686.rpm gnutls-debugsource-0:3.6.16-8.el8_10.4.x86_64.rpm

Rocky Linux 8 aarch64 - AppStream

gnutls-c++-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-c++-debuginfo-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-dane-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-dane-debuginfo-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-devel-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-utils-0:3.6.16-8.el8_10.4.aarch64.rpm gnutls-utils-debuginfo-0:3.6.16-8.el8_10.4.aarch64.rpm

Rocky Linux 8 x86_64 - AppStream

gnutls-c++-0:3.6.16-8.el8_10.4.i686.rpm gnutls-c++-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-c++-debuginfo-0:3.6.16-8.el8_10.4.i686.rpm gnutls-c++-debuginfo-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-dane-0:3.6.16-8.el8_10.4.i686.rpm gnutls-dane-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-dane-debuginfo-0:3.6.16-8.el8_10.4.i686.rpm gnutls-dane-debuginfo-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-devel-0:3.6.16-8.el8_10.4.i686.rpm gnutls-devel-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-utils-0:3.6.16-8.el8_10.4.x86_64.rpm gnutls-utils-debuginfo-0:3.6.16-8.el8_10.4.x86_64.rpm