Gnu · Gnutls · CVE-2015-6251
**Name of the Vulnerable Software and Affected Versions**
GnuTLS versions prior to 3.3.17
GnuTLS versions 3.4.x prior to 3.4.4
**Description**
The issue is related to a double free vulnerability that can be exploited by remote attackers to cause a denial of service. This can be achieved by providing a long DistinguishedName (DN) entry in a certificate. The vulnerability is associated with an error in memory management, specifically a double free error, which can lead to a denial of service.
**Recommendations**
For GnuTLS versions prior to 3.3.17, update to version 3.3.17 or later.
For GnuTLS versions 3.4.x prior to 3.4.4, update to version 3.4.4 or later.