CVE-2025-32988 Details
Description
A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the export logic of Subject Alternative Name (SAN) entries containing an otherName. If the type-id OID is invalid or malformed, GnuTLS will call asn1_delete_structure() on an ASN.1 node it does not own, leading to a double-free condition when the parent function or caller later attempts to free the same structure. This vulnerability can be triggered using only public GnuTLS APIs and may result in denial of service or memory corruption, depending on allocator behavior.
A double-free vulnerability has been identified in GnuTLS, arising from improper ownership management in the export process of Subject Alternative Name (SAN) entries that include an otherName. When an invalid or malformed type-id OID is present, GnuTLS erroneously calls asn1_delete_structure() on an ASN.1 node it does not own. This mismanagement creates a double-free condition, as the parent function or caller subsequently attempts to free the same structure. The vulnerability can be exploited using public GnuTLS APIs, potentially leading to memory corruption or a denial-of-service condition, depending on the behavior of the memory allocator.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 10, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-415 | Double Free | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| gnu gnutls | < 3.8.10 |
CPE
Remediation
| |
| redhat openshift container platform | 4.0 |
CPE
Remediation
| |
| redhat enterprise linux | 6.0 7.0 8.0 9.0 10.0 |
CPE
Remediation
| |
Change History
25 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 1, 2026 | CVE Modified | [email protected] |
| Aug 31, 2026 | CVE Modified | siemens-SADP |
| Aug 31, 2026 | CVE Modified | [email protected] |
| Aug 31, 2026 | CVE Modified | CVE |
| Aug 21, 2026 | CVE Modified | [email protected] |
| Jun 30, 2026 | CVE Modified | [email protected] |
| Jun 25, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | siemens-SADP |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 17, 2026 | CVE Modified | [email protected] |
| May 12, 2026 | CVE Modified | siemens-SADP |
| Apr 20, 2026 | CVE Modified | [email protected] |
| Mar 26, 2026 | CVE Modified | [email protected] |
| Dec 1, 2025 | CVE Modified | [email protected] |
| Nov 6, 2025 | CVE Modified | [email protected] |
| Nov 4, 2025 | CVE Modified | CVE |
| Nov 3, 2025 | CVE Modified | CVE |
| Oct 23, 2025 | CVE Modified | [email protected] |
| Oct 7, 2025 | CVE Modified | [email protected] |
| Oct 6, 2025 | CVE Modified | [email protected] |
| Oct 6, 2025 | CVE Modified | [email protected] |
| Sep 17, 2025 | CVE Modified | [email protected] |
| Sep 17, 2025 | CVE Modified | [email protected] |
| Aug 21, 2025 | Initial Analysis | [email protected] |
| Jul 10, 2025 | New CVE Received | [email protected] |