CVE-2006-4790

GnuTLS - PKCS #1 v1.5 Signature Forgery via Excess Data in digestAlgorithm.parameters

Title source: llm
STIX 2.1

Description

verify.c in GnuTLS before 1.4.4, when using an RSA key with exponent 3, does not properly handle excess data in the digestAlgorithm.parameters field when generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents GnuTLS from correctly verifying X.509 and other certificates that use PKCS, a variant of CVE-2006-4339.

References (30)

Core 30
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/20027
Patch, Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2006-0680.html
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102970-1
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102648-1
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25762
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22992
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/21937
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22049
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1016844
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3899
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2006_23_sr.html
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2006:166
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9937
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3635
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/21942
Various Sources mailing-list x_refsource_mlist
http://lists.gnupg.org/pipermail/gnutls-dev/2006-September/001205.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22080
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200609-15.xml
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2007_10_ibmjava.html
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2006/dsa-1182
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/28953
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/21973
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22226
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22084
Various Sources mailing-list x_refsource_mlist
http://lists.gnupg.org/pipermail/gnutls-dev/2006-September/001212.html
Vendor Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-348-1
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2289
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22097

Scores

EPSS 0.0679
EPSS Percentile 91.4%

Details

Status published
Products (40)
gnu/gnutls 1.0.17
gnu/gnutls 1.0.18
gnu/gnutls 1.0.19
gnu/gnutls 1.0.20
gnu/gnutls 1.0.21
gnu/gnutls 1.0.22
gnu/gnutls 1.0.23
gnu/gnutls 1.0.24
gnu/gnutls 1.0.25
gnu/gnutls 1.1.14
... and 30 more
Published Sep 14, 2006
Tracked Since Feb 18, 2026