{"id":"CGA-hhqg-rqq5-cvcf","modified":"2026-09-07T01:39:18.773025018Z","published":"2025-10-30T20:33:27Z","upstream":["CVE-2020-11501","GHSA-j883-wjrw-g444"],"references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WDYY3R4F5CUTFAMXH2C5NKYFVDEJLTT7/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ILMOWPKMTZAIMK5F32TUMO34XCABUCFJ/"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/202004-06"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20200416-0002/"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/4322-1/"},{"type":"ADVISORY","url":"https://www.debian.org/security/2020/dsa-4652"},{"type":"ADVISORY","url":"https://www.gnutls.org/security-new.html#GNUTLS-SA-2020-03-31"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00015.html"},{"type":"FIX","url":"https://gitlab.com/gnutls/gnutls/-/issues/960"},{"type":"FIX","url":"https://gitlab.com/gnutls/gnutls/-/commit/5b595e8e52653f6c5726a4cdd8fddeb6e83804d2"}],"affected":[{"package":{"name":"gnutls","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/gnutls?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0"}]}],"ecosystem_specific":{"components":[{"component_name":"gnutls","component_version":"","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/gnutls","latest_event_status":"false_positive_determination","latest_event_timestamp":"2023-01-15T00:22:41Z"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-hhqg-rqq5-cvcf.json"}},{"package":{"name":"gnutls","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/gnutls?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0"}]}],"ecosystem_specific":{"components":[{"component_version":"","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/gnutls","latest_event_status":"false_positive_determination","latest_event_timestamp":"2023-01-15T00:22:41Z","component_name":"gnutls"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-hhqg-rqq5-cvcf.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N"}]}