High severity7.5NVD Advisory· Published Jan 27, 2020· Updated Jun 17, 2026
CVE-2015-0294
CVE-2015-0294
Description
GnuTLS before 3.3.13 does not validate that the signature algorithms match when importing a certificate.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
- Range: <3.3.13
- osv-coords4 versionspkg:rpm/suse/gnutls&distro=SUSE%20Linux%20Enterprise%20Desktop%2012pkg:rpm/suse/gnutls&distro=SUSE%20Linux%20Enterprise%20Server%2012pkg:rpm/suse/gnutls&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012pkg:rpm/suse/gnutls&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012
< 3.2.15-7.2+ 3 more
- (no CPE)range: < 3.2.15-7.2
- (no CPE)range: < 3.2.15-7.2
- (no CPE)range: < 3.2.15-7.2
- (no CPE)range: < 3.2.15-7.2
- Range: before 3.3.13
Patches
Vulnerability mechanics
References
3- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- gitlab.com/gnutls/gnutls/commit/6e76e9b9fa845b76b0b9a45f05f4b54a052578ffnvdPatchThird Party Advisory
- www.debian.org/security/2015/dsa-3191nvdThird Party Advisory
News mentions
0No linked articles in our index yet.