CVE-2024-12243
EUVD-2024-5070910.02.2025, 16:15
A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data processing. Due to an inefficient algorithm in libtasn1, decoding certain DER-encoded certificate data can take excessive time, leading to increased resource consumption. This flaw allows a remote attacker to send a specially crafted certificate, causing GnuTLS to become unresponsive or slow, resulting in a denial-of-service condition.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIPLUS S7-1500 CPU 1518-4 PN\/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | RUGGEDCOM ROX MX5000 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX MX5000RE | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1400 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1500 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1501 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1510 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1511 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1512 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1524 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX1536 | 𝑥 < V2.17.0 | ADP |
| Siemens | RUGGEDCOM ROX RX5000 | 𝑥 < V2.17.0 | ADP |
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| gnutls |
| ||||||||||||||||
| libgnutls-devel |
| ||||||||||||||||
| libgnutls-openssl27 |
| ||||||||||||||||
| libgnutls28 |
| ||||||||||||||||
| libgnutls28-32bit |
| ||||||||||||||||
| libgnutls30 |
| ||||||||||||||||
| libgnutls30-32bit |
| ||||||||||||||||
| libgnutls30-hmac |
| ||||||||||||||||
| libgnutls30-hmac-32bit |
| ||||||||||||||||
| libgnutlsxx-devel |
| ||||||||||||||||
| libgnutlsxx28 |
| ||||||||||||||||
| libgnutlsxx30 |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||
|---|---|---|---|---|---|
| gnutls |
| ||||
| gnutls-c |
| ||||
| gnutls-dane |
| ||||
| gnutls-devel |
| ||||
| gnutls-utils |
|
References