-
Bug
-
Resolution: Obsolete
-
Minor
-
None
-
rhel-10.0
-
None
-
No
-
Low
-
1
-
rhel-security-crypto
-
ssg_security
-
0.5
-
False
-
False
-
-
None
-
Crypto25Q1
-
None
When using gnutls-3.8.8-1.el10.x86_64, the tlsfuzzer test-tls13-mlkem.py script fails for the following test cases:
- secp256r1mlkem768: invalid ECDH point format: compressed
- secp256r1mlkem768: invalid ECDH point format: hybrid
- secp256r1mlkem768: invalid ECDH point format: raw
- secp256r1mlkem768: malformed pqc part, variable 0
- secp256r1mlkem768: malformed pqc part, variable 1
- secp256r1mlkem768: malformed pqc part, variable 2
- secp256r1mlkem768: malformed pqc part, variable 3
- x25519mlkem768: malformed pqc part, variable 0
- x25519mlkem768: malformed pqc part, variable 1
- x25519mlkem768: malformed pqc part, variable 2
- x25519mlkem768: malformed pqc part, variable 3
- relates to
-
RHEL-82081 GnuTLS error checking for hybrid PQC is incomplete/incorrect (on non-x86_64?)
-
- Release Pending
-
- links to
-
RHSA-2024:142055 gnutls bug fix and enhancement update