CVE-2019-15523

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/12/2020
Last modified:
04/01/2021

Description

An issue was discovered in LINBIT csync2 through 2.0. It does not correctly check for the return value GNUTLS_E_WARNING_ALERT_RECEIVED of the gnutls_handshake() function. It neglects to call this function again, as required by the design of the API.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:linbit:csync2:*:*:*:*:*:*:*:* 2.0 (including)
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*