Solution
Please Install the Updated Packages.
Insight
The gnutls library was updated to fixed x509 certificate validation problems, where man-in-the-middle attackers could hijack SSL connections.
This update also reenables Elliptic Curve support to meet current day cryptographic requirements.
Affected
gnutls on openSUSE 13.1
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2014-0092 -
CVSS Base Score: 5.8
AV:N/AC:M/Au:N/C:P/I:P/A:N
Related Vulnerabilities