CVE-2025-14831
EUVD-2025-20736509.02.2026, 15:16
A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of name constraints and subject alternative names (SANs).Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| Siemens | SIMATIC CN 4100 | 𝑥 < V5.0 | ADP |
| siemens | simatic_cn_4100 | 𝑥 < 5.0 | ADP |
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| gnutls |
| ||||||||
| libgnutls-devel |
| ||||||||
| libgnutls30 |
| ||||||||
| libgnutls30-32bit |
| ||||||||
| libgnutls30-hmac |
| ||||||||
| libgnutls30-hmac-32bit |
| ||||||||
| libgnutlsxx-devel |
| ||||||||
| libgnutlsxx28 |
| ||||||||
| libgnutlsxx30 |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| gnutls |
| ||||||||||||
| gnutls-c |
| ||||||||||||
| gnutls-dane |
| ||||||||||||
| gnutls-devel |
| ||||||||||||
| gnutls-utils |
| ||||||||||||
| libtasn1 |
| ||||||||||||
| libtasn1-devel |
| ||||||||||||
| libtasn1-tools |
|
Amazon Linux Releases
Amazon Package | |||
|---|---|---|---|
| gnutls |
| ||
| gnutls-c++ |
| ||
| gnutls-c++-debuginfo |
| ||
| gnutls-dane |
| ||
| gnutls-dane-debuginfo |
| ||
| gnutls-debuginfo |
| ||
| gnutls-debugsource |
| ||
| gnutls-devel |
| ||
| gnutls-utils |
| ||
| gnutls-utils-debuginfo |
|
References