gnutls vulnerabilities disappeared

Paul van Erk p.vanerk at simgroep.nl
Thu Apr 24 08:32:57 UTC 2014


Hi,

Recently, I noticed a vulnerability in the gnutls package:

gnutls-2.12.23_3 multiple certificate verification issues
Shown here: 
http://portaudit.freebsd.org/f645aa90-a3e8-11e3-a422-3c970e169bc2.html

Now, however, this vulnerability message is not found after running "pkg 
audit gnutls-2.12.23_3"

I do find 3 other vulnerabilities when running "pkg audit gnutls-2.12", 
but not the original one, that is still active at the given URL, though. 
This problem is experienced on FreeBSD 8, 9 and 10. Is there a known 
issue here?

Regards,
Paul van Erk


More information about the freebsd-security mailing list