CVE-2025-9820

Discovered by AISLEPUBLISHEDCWE-121

Description

A flaw was found in the GnuTLS library, specifically in the gnutls_pkcs11_token_init() function that handles PKCS#11 token initialization. When a token label longer than expected is processed, the function writes past the end of a fixed-size stack buffer. This programming error can cause the application using GnuTLS to crash or, in certain conditions, be exploited for code execution. As a result, systems or applications relying on GnuTLS may be vulnerable to a denial of service or local privilege escalation attacks.

CVSS Base Scores

CVSS v3.1(Primary)
4.0

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Affected Products

VendorProductVersionStatus
Red HatRed Hat Enterprise Linux 100:3.8.10-3.el10_1unaffected
Red HatRed Hat Enterprise Linux 100:3.6.16-8.el8_10.5
Red HatRed Hat Enterprise Linux 100:3.8.3-10.el9_7
Red HatRed Hat Enterprise Linux 107.13.5-4.1777325677
Red HatRed Hat Enterprise Linux 107.13.5-4.1777325711
Red HatRed Hat Enterprise Linux 107.13.5-4.1777325710
Red HatRed Hat Enterprise Linux 107.13.5-3.1777325680
Red HatRed Hat Enterprise Linux 107.13.5-4.1777325709
Red HatRed Hat Enterprise Linux 107.13.5-4.1777325680
Red HatRed Hat Enterprise Linux 107.13.5-4.1777325708
Red HatRed Hat Enterprise Linux 101774002867
Red HatRed Hat Enterprise Linux 101775668717
Red HatRed Hat Enterprise Linux 101775675922
Red HatRed Hat Enterprise Linux 103.8.12-1.1.hum1
Red HatRed Hat Enterprise Linux 101773685509
Red HatRed Hat Enterprise Linux 101773670073
Red HatRed Hat Enterprise Linux 101773672059
Red HatRed Hat Enterprise Linux 101773668803
Red HatRed Hat Enterprise Linux 101773670137
Red HatRed Hat Enterprise Linux 80:3.8.10-3.el10_1unaffected
Red HatRed Hat Enterprise Linux 80:3.6.16-8.el8_10.5
Red HatRed Hat Enterprise Linux 80:3.8.3-10.el9_7
Red HatRed Hat Enterprise Linux 87.13.5-4.1777325677
Red HatRed Hat Enterprise Linux 87.13.5-4.1777325711
Red HatRed Hat Enterprise Linux 87.13.5-4.1777325710
Red HatRed Hat Enterprise Linux 87.13.5-3.1777325680
Red HatRed Hat Enterprise Linux 87.13.5-4.1777325709
Red HatRed Hat Enterprise Linux 87.13.5-4.1777325680
Red HatRed Hat Enterprise Linux 87.13.5-4.1777325708
Red HatRed Hat Enterprise Linux 81774002867
Red HatRed Hat Enterprise Linux 81775668717
Red HatRed Hat Enterprise Linux 81775675922
Red HatRed Hat Enterprise Linux 83.8.12-1.1.hum1
Red HatRed Hat Enterprise Linux 81773685509
Red HatRed Hat Enterprise Linux 81773670073
Red HatRed Hat Enterprise Linux 81773672059
Red HatRed Hat Enterprise Linux 81773668803
Red HatRed Hat Enterprise Linux 81773670137
Red HatRed Hat Enterprise Linux 90:3.8.10-3.el10_1unaffected
Red HatRed Hat Enterprise Linux 90:3.6.16-8.el8_10.5
Red HatRed Hat Enterprise Linux 90:3.8.3-10.el9_7
Red HatRed Hat Enterprise Linux 97.13.5-4.1777325677
Red HatRed Hat Enterprise Linux 97.13.5-4.1777325711
Red HatRed Hat Enterprise Linux 97.13.5-4.1777325710
Red HatRed Hat Enterprise Linux 97.13.5-3.1777325680
Red HatRed Hat Enterprise Linux 97.13.5-4.1777325709
Red HatRed Hat Enterprise Linux 97.13.5-4.1777325680
Red HatRed Hat Enterprise Linux 97.13.5-4.1777325708
Red HatRed Hat Enterprise Linux 91774002867
Red HatRed Hat Enterprise Linux 91775668717
Red HatRed Hat Enterprise Linux 91775675922
Red HatRed Hat Enterprise Linux 93.8.12-1.1.hum1
Red HatRed Hat Enterprise Linux 91773685509
Red HatRed Hat Enterprise Linux 91773670073
Red HatRed Hat Enterprise Linux 91773672059
Red HatRed Hat Enterprise Linux 91773668803
Red HatRed Hat Enterprise Linux 91773670137
Red HatRHEL-8 based Middleware Containers0:3.8.10-3.el10_1unaffected
Red HatRHEL-8 based Middleware Containers0:3.6.16-8.el8_10.5
Red HatRHEL-8 based Middleware Containers0:3.8.3-10.el9_7
Red HatRHEL-8 based Middleware Containers7.13.5-4.1777325677
Red HatRHEL-8 based Middleware Containers7.13.5-4.1777325711
Red HatRHEL-8 based Middleware Containers7.13.5-4.1777325710
Red HatRHEL-8 based Middleware Containers7.13.5-3.1777325680
Red HatRHEL-8 based Middleware Containers7.13.5-4.1777325709
Red HatRHEL-8 based Middleware Containers7.13.5-4.1777325680
Red HatRHEL-8 based Middleware Containers7.13.5-4.1777325708
Red HatRHEL-8 based Middleware Containers1774002867
Red HatRHEL-8 based Middleware Containers1775668717
Red HatRHEL-8 based Middleware Containers1775675922
Red HatRHEL-8 based Middleware Containers3.8.12-1.1.hum1
Red HatRHEL-8 based Middleware Containers1773685509
Red HatRHEL-8 based Middleware Containers1773670073
Red HatRHEL-8 based Middleware Containers1773672059
Red HatRHEL-8 based Middleware Containers1773668803
Red HatRHEL-8 based Middleware Containers1773670137
Red HatRed Hat Ceph Storage 80:3.8.10-3.el10_1unaffected
Red HatRed Hat Ceph Storage 80:3.6.16-8.el8_10.5
Red HatRed Hat Ceph Storage 80:3.8.3-10.el9_7
Red HatRed Hat Ceph Storage 87.13.5-4.1777325677
Red HatRed Hat Ceph Storage 87.13.5-4.1777325711
Red HatRed Hat Ceph Storage 87.13.5-4.1777325710
Red HatRed Hat Ceph Storage 87.13.5-3.1777325680
Red HatRed Hat Ceph Storage 87.13.5-4.1777325709
Red HatRed Hat Ceph Storage 87.13.5-4.1777325680
Red HatRed Hat Ceph Storage 87.13.5-4.1777325708
Red HatRed Hat Ceph Storage 81774002867
Red HatRed Hat Ceph Storage 81775668717
Red HatRed Hat Ceph Storage 81775675922
Red HatRed Hat Ceph Storage 83.8.12-1.1.hum1
Red HatRed Hat Ceph Storage 81773685509
Red HatRed Hat Ceph Storage 81773670073
Red HatRed Hat Ceph Storage 81773672059
Red HatRed Hat Ceph Storage 81773668803
Red HatRed Hat Ceph Storage 81773670137
Red HatRed Hat Discovery 20:3.8.10-3.el10_1unaffected
Red HatRed Hat Discovery 20:3.6.16-8.el8_10.5
Red HatRed Hat Discovery 20:3.8.3-10.el9_7
Red HatRed Hat Discovery 27.13.5-4.1777325677
Red HatRed Hat Discovery 27.13.5-4.1777325711
Red HatRed Hat Discovery 27.13.5-4.1777325710
Red HatRed Hat Discovery 27.13.5-3.1777325680
Red HatRed Hat Discovery 27.13.5-4.1777325709
Red HatRed Hat Discovery 27.13.5-4.1777325680
Red HatRed Hat Discovery 27.13.5-4.1777325708
Red HatRed Hat Discovery 21774002867
Red HatRed Hat Discovery 21775668717
Red HatRed Hat Discovery 21775675922
Red HatRed Hat Discovery 23.8.12-1.1.hum1
Red HatRed Hat Discovery 21773685509
Red HatRed Hat Discovery 21773670073
Red HatRed Hat Discovery 21773672059
Red HatRed Hat Discovery 21773668803
Red HatRed Hat Discovery 21773670137
Red HatRed Hat Hardened Images0:3.8.10-3.el10_1unaffected
Red HatRed Hat Hardened Images0:3.6.16-8.el8_10.5
Red HatRed Hat Hardened Images0:3.8.3-10.el9_7
Red HatRed Hat Hardened Images7.13.5-4.1777325677
Red HatRed Hat Hardened Images7.13.5-4.1777325711
Red HatRed Hat Hardened Images7.13.5-4.1777325710
Red HatRed Hat Hardened Images7.13.5-3.1777325680
Red HatRed Hat Hardened Images7.13.5-4.1777325709
Red HatRed Hat Hardened Images7.13.5-4.1777325680
Red HatRed Hat Hardened Images7.13.5-4.1777325708
Red HatRed Hat Hardened Images1774002867
Red HatRed Hat Hardened Images1775668717
Red HatRed Hat Hardened Images1775675922
Red HatRed Hat Hardened Images3.8.12-1.1.hum1
Red HatRed Hat Hardened Images1773685509
Red HatRed Hat Hardened Images1773670073
Red HatRed Hat Hardened Images1773672059
Red HatRed Hat Hardened Images1773668803
Red HatRed Hat Hardened Images1773670137
Red HatRed Hat Insights proxy 1.50:3.8.10-3.el10_1unaffected
Red HatRed Hat Insights proxy 1.50:3.6.16-8.el8_10.5
Red HatRed Hat Insights proxy 1.50:3.8.3-10.el9_7
Red HatRed Hat Insights proxy 1.57.13.5-4.1777325677
Red HatRed Hat Insights proxy 1.57.13.5-4.1777325711
Red HatRed Hat Insights proxy 1.57.13.5-4.1777325710
Red HatRed Hat Insights proxy 1.57.13.5-3.1777325680
Red HatRed Hat Insights proxy 1.57.13.5-4.1777325709
Red HatRed Hat Insights proxy 1.57.13.5-4.1777325680
Red HatRed Hat Insights proxy 1.57.13.5-4.1777325708
Red HatRed Hat Insights proxy 1.51774002867
Red HatRed Hat Insights proxy 1.51775668717
Red HatRed Hat Insights proxy 1.51775675922
Red HatRed Hat Insights proxy 1.53.8.12-1.1.hum1
Red HatRed Hat Insights proxy 1.51773685509
Red HatRed Hat Insights proxy 1.51773670073
Red HatRed Hat Insights proxy 1.51773672059
Red HatRed Hat Insights proxy 1.51773668803
Red HatRed Hat Insights proxy 1.51773670137
Red HatRed Hat Update Infrastructure 50:3.8.10-3.el10_1unaffected
Red HatRed Hat Update Infrastructure 50:3.6.16-8.el8_10.5
Red HatRed Hat Update Infrastructure 50:3.8.3-10.el9_7
Red HatRed Hat Update Infrastructure 57.13.5-4.1777325677
Red HatRed Hat Update Infrastructure 57.13.5-4.1777325711
Red HatRed Hat Update Infrastructure 57.13.5-4.1777325710
Red HatRed Hat Update Infrastructure 57.13.5-3.1777325680
Red HatRed Hat Update Infrastructure 57.13.5-4.1777325709
Red HatRed Hat Update Infrastructure 57.13.5-4.1777325680
Red HatRed Hat Update Infrastructure 57.13.5-4.1777325708
Red HatRed Hat Update Infrastructure 51774002867
Red HatRed Hat Update Infrastructure 51775668717
Red HatRed Hat Update Infrastructure 51775675922
Red HatRed Hat Update Infrastructure 53.8.12-1.1.hum1
Red HatRed Hat Update Infrastructure 51773685509
Red HatRed Hat Update Infrastructure 51773670073
Red HatRed Hat Update Infrastructure 51773672059
Red HatRed Hat Update Infrastructure 51773668803
Red HatRed Hat Update Infrastructure 51773670137
Red HatRed Hat Enterprise Linux 60:3.8.10-3.el10_1unaffected
Red HatRed Hat Enterprise Linux 60:3.6.16-8.el8_10.5
Red HatRed Hat Enterprise Linux 60:3.8.3-10.el9_7
Red HatRed Hat Enterprise Linux 67.13.5-4.1777325677
Red HatRed Hat Enterprise Linux 67.13.5-4.1777325711
Red HatRed Hat Enterprise Linux 67.13.5-4.1777325710
Red HatRed Hat Enterprise Linux 67.13.5-3.1777325680
Red HatRed Hat Enterprise Linux 67.13.5-4.1777325709
Red HatRed Hat Enterprise Linux 67.13.5-4.1777325680
Red HatRed Hat Enterprise Linux 67.13.5-4.1777325708
Red HatRed Hat Enterprise Linux 61774002867
Red HatRed Hat Enterprise Linux 61775668717
Red HatRed Hat Enterprise Linux 61775675922
Red HatRed Hat Enterprise Linux 63.8.12-1.1.hum1
Red HatRed Hat Enterprise Linux 61773685509
Red HatRed Hat Enterprise Linux 61773670073
Red HatRed Hat Enterprise Linux 61773672059
Red HatRed Hat Enterprise Linux 61773668803
Red HatRed Hat Enterprise Linux 61773670137
Red HatRed Hat Enterprise Linux 70:3.8.10-3.el10_1unaffected
Red HatRed Hat Enterprise Linux 70:3.6.16-8.el8_10.5
Red HatRed Hat Enterprise Linux 70:3.8.3-10.el9_7
Red HatRed Hat Enterprise Linux 77.13.5-4.1777325677
Red HatRed Hat Enterprise Linux 77.13.5-4.1777325711
Red HatRed Hat Enterprise Linux 77.13.5-4.1777325710
Red HatRed Hat Enterprise Linux 77.13.5-3.1777325680
Red HatRed Hat Enterprise Linux 77.13.5-4.1777325709
Red HatRed Hat Enterprise Linux 77.13.5-4.1777325680
Red HatRed Hat Enterprise Linux 77.13.5-4.1777325708
Red HatRed Hat Enterprise Linux 71774002867
Red HatRed Hat Enterprise Linux 71775668717
Red HatRed Hat Enterprise Linux 71775675922
Red HatRed Hat Enterprise Linux 73.8.12-1.1.hum1
Red HatRed Hat Enterprise Linux 71773685509
Red HatRed Hat Enterprise Linux 71773670073
Red HatRed Hat Enterprise Linux 71773672059
Red HatRed Hat Enterprise Linux 71773668803
Red HatRed Hat Enterprise Linux 71773670137
Red HatRed Hat OpenShift Container Platform 40:3.8.10-3.el10_1unaffected
Red HatRed Hat OpenShift Container Platform 40:3.6.16-8.el8_10.5
Red HatRed Hat OpenShift Container Platform 40:3.8.3-10.el9_7
Red HatRed Hat OpenShift Container Platform 47.13.5-4.1777325677
Red HatRed Hat OpenShift Container Platform 47.13.5-4.1777325711
Red HatRed Hat OpenShift Container Platform 47.13.5-4.1777325710
Red HatRed Hat OpenShift Container Platform 47.13.5-3.1777325680
Red HatRed Hat OpenShift Container Platform 47.13.5-4.1777325709
Red HatRed Hat OpenShift Container Platform 47.13.5-4.1777325680
Red HatRed Hat OpenShift Container Platform 47.13.5-4.1777325708
Red HatRed Hat OpenShift Container Platform 41774002867
Red HatRed Hat OpenShift Container Platform 41775668717
Red HatRed Hat OpenShift Container Platform 41775675922
Red HatRed Hat OpenShift Container Platform 43.8.12-1.1.hum1
Red HatRed Hat OpenShift Container Platform 41773685509
Red HatRed Hat OpenShift Container Platform 41773670073
Red HatRed Hat OpenShift Container Platform 41773672059
Red HatRed Hat OpenShift Container Platform 41773668803
Red HatRed Hat OpenShift Container Platform 41773670137

References