Direct Vulnerabilities

Known vulnerabilities in the gnutls package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Improper Certificate Validation

<0:3.8.10-4.amzn2023.0.2
  • M
Improper Validation of Specified Quantity in Input

<0:3.8.10-4.amzn2023.0.2
  • M
Information Exposure

<0:3.8.10-4.amzn2023.0.2
  • M
Improper Certificate Validation

<0:3.8.10-4.amzn2023.0.2
  • H
Integer Underflow

<0:3.8.3-8.amzn2023.0.4
  • H
Expired Pointer Dereference

<0:3.8.3-8.amzn2023.0.3
  • H
Improper Handling of Case Sensitivity

<0:3.8.3-8.amzn2023.0.3
  • H
Improper Validation of Specified Quantity in Input

<0:3.8.3-8.amzn2023.0.3
  • H
Off-by-one Error

<0:3.8.3-8.amzn2023.0.3
  • H
Improper Handling of Length Parameter Inconsistency

<0:3.8.3-8.amzn2023.0.3
  • H
Improper Null Termination

<0:3.8.3-8.amzn2023.0.3
  • H
Undefined Behavior for Input to API

<0:3.8.3-8.amzn2023.0.3
  • M
Algorithmic Complexity

<0:3.8.3-8.amzn2023.0.2
  • M
Double Free

<0:3.8.3-8.amzn2023.0.1
  • M
NULL Pointer Dereference

<0:3.8.3-8.amzn2023.0.1
  • M
Improper Certificate Validation

<0:3.8.3-8.amzn2023.0.1
  • M
Heap-based Buffer Overflow

<0:3.8.3-8.amzn2023.0.1
  • M
Algorithmic Complexity

<0:3.8.3-6.amzn2023.0.1
  • M
Uncaught Exception

<0:3.8.0-380.amzn2023.0.6
  • M
Use of a Broken or Risky Cryptographic Algorithm

<0:3.8.0-380.amzn2023.0.6
  • M
Information Exposure

<0:3.8.0-379.amzn2023.0.5
  • M
Improper Verification of Cryptographic Signature

<0:3.8.0-378.amzn2023.0.4
  • M
Information Exposure

<0:3.8.0-377.amzn2023.0.3
  • H
Covert Timing Channel

<0:3.7.8-360.amzn2023.0.4