Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:0155 - Security Advisory
Issued:
2024-01-10
Updated:
2024-01-10

RHSA-2024:0155 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: gnutls security update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for gnutls is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS.

Security Fix(es):

  • gnutls: timing side-channel in the RSA-PSK authentication (CVE-2023-5981)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 8 s390x
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le
  • Red Hat Enterprise Linux for ARM 64 8 aarch64

Fixes

  • BZ - 2248445 - CVE-2023-5981 gnutls: timing side-channel in the RSA-PSK authentication

CVEs

  • CVE-2023-5981

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 8

SRPM
gnutls-3.6.16-8.el8_9.src.rpm SHA-256: 470f8e47d00bebab14c20df5748fc888ef4c5757513daa333d3fb605655d88b5
x86_64
gnutls-3.6.16-8.el8_9.i686.rpm SHA-256: e7f7378e3fbb2757aeb699fca42a499ce9d06ade5e93d91dd96f30c0e30ee145
gnutls-3.6.16-8.el8_9.x86_64.rpm SHA-256: 2d486c12fbc97b53b0e6e6073d7f2d2e179497dd3a594d9a01e0f6a50ce7eee3
gnutls-c++-3.6.16-8.el8_9.i686.rpm SHA-256: e99692d715ba8f4ee4221809bff10495d131631318e1410662e6b0582778ac25
gnutls-c++-3.6.16-8.el8_9.x86_64.rpm SHA-256: 682a3c0c3e7151fd6975539fa2add8161df989f86ab6c9b523926f7a0ba3cff2
gnutls-c++-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: 7d3d1ea3778e9e477311ee3eeb8615a73620e4d99a7107287463c9f91d796f23
gnutls-c++-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: 7d3d1ea3778e9e477311ee3eeb8615a73620e4d99a7107287463c9f91d796f23
gnutls-c++-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: 875cbcdeae1f31fa5b7701d3a692b1756490b99b7f19fe9de625cc1585ac95f7
gnutls-c++-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: 875cbcdeae1f31fa5b7701d3a692b1756490b99b7f19fe9de625cc1585ac95f7
gnutls-dane-3.6.16-8.el8_9.i686.rpm SHA-256: 43cde15213a8e30eebb723e2306bc849bb3e28011b8c1b671a7990ea2154c096
gnutls-dane-3.6.16-8.el8_9.x86_64.rpm SHA-256: f6c9653afe4788e5a5c0e0536a0840dab5a66812b1291d84a03eb47d3196fdc8
gnutls-dane-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: 3d9ba8c950cbafcbc6937d2ff65fec88b29ae3957b090d26912cb21c4568b09b
gnutls-dane-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: 3d9ba8c950cbafcbc6937d2ff65fec88b29ae3957b090d26912cb21c4568b09b
gnutls-dane-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: 5e0699f589951c87e67e15e2ff2534e0383735e1dda7817a9f491e874864f6e4
gnutls-dane-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: 5e0699f589951c87e67e15e2ff2534e0383735e1dda7817a9f491e874864f6e4
gnutls-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: d18e5fea06f8be41e6f9a2fd0499cf00cdacd5bdc68fe6e184f7a91da3231f2c
gnutls-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: d18e5fea06f8be41e6f9a2fd0499cf00cdacd5bdc68fe6e184f7a91da3231f2c
gnutls-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: faa48ec1cbaa68db2ea931717bbcb6ec4b21b076fc9c68473c187b17d74eef96
gnutls-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: faa48ec1cbaa68db2ea931717bbcb6ec4b21b076fc9c68473c187b17d74eef96
gnutls-debugsource-3.6.16-8.el8_9.i686.rpm SHA-256: 857792062883d4813aec64e47fea0ee0496a4cd0589ff6f0c23baba51674ab5f
gnutls-debugsource-3.6.16-8.el8_9.i686.rpm SHA-256: 857792062883d4813aec64e47fea0ee0496a4cd0589ff6f0c23baba51674ab5f
gnutls-debugsource-3.6.16-8.el8_9.x86_64.rpm SHA-256: 596e7ad73a05b997d6566d34935669ecc3093610f2db7660595dc980e8919aff
gnutls-debugsource-3.6.16-8.el8_9.x86_64.rpm SHA-256: 596e7ad73a05b997d6566d34935669ecc3093610f2db7660595dc980e8919aff
gnutls-devel-3.6.16-8.el8_9.i686.rpm SHA-256: 971449f09fa84ea73268cb53d46b1eb8631990c3582f9791778f6bb08fb2da27
gnutls-devel-3.6.16-8.el8_9.x86_64.rpm SHA-256: e86d5f5a7fbb83ad0dc355de3702997477140de13c4b4919b8c9eb0d8fa22342
gnutls-utils-3.6.16-8.el8_9.x86_64.rpm SHA-256: d402699593b84ce9d883ebe12de85d6fc4bd1907b4ee736196cc794176c68059
gnutls-utils-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: 6c271b191a6e81c1f9547b722361cd7e019f95e1b2cd97980ca6cfc6bb515ec3
gnutls-utils-debuginfo-3.6.16-8.el8_9.i686.rpm SHA-256: 6c271b191a6e81c1f9547b722361cd7e019f95e1b2cd97980ca6cfc6bb515ec3
gnutls-utils-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: b64f3505724c0ed3a8a18e7efb139d26d8641792845084f31ab74236bb951b4a
gnutls-utils-debuginfo-3.6.16-8.el8_9.x86_64.rpm SHA-256: b64f3505724c0ed3a8a18e7efb139d26d8641792845084f31ab74236bb951b4a

Red Hat Enterprise Linux for IBM z Systems 8

SRPM
gnutls-3.6.16-8.el8_9.src.rpm SHA-256: 470f8e47d00bebab14c20df5748fc888ef4c5757513daa333d3fb605655d88b5
s390x
gnutls-3.6.16-8.el8_9.s390x.rpm SHA-256: 8f5a11d56f4e9f9615073ae083548208ac6a3a9ab2e7ce82b75f6f41d6e43455
gnutls-c++-3.6.16-8.el8_9.s390x.rpm SHA-256: 960759b81f30a0a58ebc60329c54a516538d36172325d6cce698701a504a0aa1
gnutls-c++-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 8ba6e955f35028d4850e8c489d162fa7fedb883b764e41ca8b238430bab89d2a
gnutls-c++-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 8ba6e955f35028d4850e8c489d162fa7fedb883b764e41ca8b238430bab89d2a
gnutls-dane-3.6.16-8.el8_9.s390x.rpm SHA-256: 5131ade0b58887668b137e6ce824a551994a0cb607ee85c1464b2221ecf36a9f
gnutls-dane-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 45801b8ade4b7c339e869ccbe90d69eee4dbfd5399bd2ca84b2aac5b16b371b7
gnutls-dane-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 45801b8ade4b7c339e869ccbe90d69eee4dbfd5399bd2ca84b2aac5b16b371b7
gnutls-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 05e3e6b1852d34ab81c0af8759e38b6decb5fe909463ac82c316ba61f00b090f
gnutls-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 05e3e6b1852d34ab81c0af8759e38b6decb5fe909463ac82c316ba61f00b090f
gnutls-debugsource-3.6.16-8.el8_9.s390x.rpm SHA-256: 4a02069a0e4f4595ba6e2344f032fc9acb7713bd7a965c65f72652ea749aa979
gnutls-debugsource-3.6.16-8.el8_9.s390x.rpm SHA-256: 4a02069a0e4f4595ba6e2344f032fc9acb7713bd7a965c65f72652ea749aa979
gnutls-devel-3.6.16-8.el8_9.s390x.rpm SHA-256: 35dcb0718f016d4df3c10040aeae3aaea5c29d0882a83762c974b92247bbce4c
gnutls-utils-3.6.16-8.el8_9.s390x.rpm SHA-256: 784f52d2552ee216ea20784beb06eb8c15450d498cd67eb22445af8cebcd320a
gnutls-utils-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 5a5e2ef79202dd0ddc506ff7768e36949a05fc65bb5fda8f3007e0dce080fa36
gnutls-utils-debuginfo-3.6.16-8.el8_9.s390x.rpm SHA-256: 5a5e2ef79202dd0ddc506ff7768e36949a05fc65bb5fda8f3007e0dce080fa36

Red Hat Enterprise Linux for Power, little endian 8

SRPM
gnutls-3.6.16-8.el8_9.src.rpm SHA-256: 470f8e47d00bebab14c20df5748fc888ef4c5757513daa333d3fb605655d88b5
ppc64le
gnutls-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 7eb6af011a83555e5b70a2617ff8d8239b4a059608befa4e0713917e37d80e84
gnutls-c++-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 3ed366dbbc2afefa698cef60d60018c964022e6ad649c98c081767ac927d651f
gnutls-c++-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: db14866410e2c40e68f7cc703a40bd2a4e6276a08d723aea27797a1df8b5ecdd
gnutls-c++-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: db14866410e2c40e68f7cc703a40bd2a4e6276a08d723aea27797a1df8b5ecdd
gnutls-dane-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 660336b550e6f8318fd008a7e0366f92b0d5bd11b7795035e4a1b6a685a4762c
gnutls-dane-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 9a325ee8e937c9595b7f2f20455cd6c004abd12f7d45ca9cb6fd0636cc58ecfa
gnutls-dane-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 9a325ee8e937c9595b7f2f20455cd6c004abd12f7d45ca9cb6fd0636cc58ecfa
gnutls-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 9dc0c9792e9d4f60d6d17ab49347569657bc696fa567292a4c628d5b3fd7892d
gnutls-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 9dc0c9792e9d4f60d6d17ab49347569657bc696fa567292a4c628d5b3fd7892d
gnutls-debugsource-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 5952bbe2d60ae81ab730f697414f238091d278cebb83047a87d54d413aa821b5
gnutls-debugsource-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 5952bbe2d60ae81ab730f697414f238091d278cebb83047a87d54d413aa821b5
gnutls-devel-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 0cefdd34c446eb17d8f38f3b83c2a95ff6372dfe0eb9d7504cf70ad5c2e528c2
gnutls-utils-3.6.16-8.el8_9.ppc64le.rpm SHA-256: ada31a73a89d82d81d4c3ae9ea0220fb4c7635ea402eb772f2a275d1ef442d19
gnutls-utils-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 160eb235176a6c1c7faa3b20c6a51c0df4558d465cff2ed2d6402564536e3fc5
gnutls-utils-debuginfo-3.6.16-8.el8_9.ppc64le.rpm SHA-256: 160eb235176a6c1c7faa3b20c6a51c0df4558d465cff2ed2d6402564536e3fc5

Red Hat Enterprise Linux for ARM 64 8

SRPM
gnutls-3.6.16-8.el8_9.src.rpm SHA-256: 470f8e47d00bebab14c20df5748fc888ef4c5757513daa333d3fb605655d88b5
aarch64
gnutls-3.6.16-8.el8_9.aarch64.rpm SHA-256: ef272e811c0e0a5e3679cefe3ac5980b44c25a17c0c9f2d237b7363e9c3e26b3
gnutls-c++-3.6.16-8.el8_9.aarch64.rpm SHA-256: 8c7d1ac46d8781c3e38e482743a0860a6e1d02b7227a7f8ffcb51910d546293f
gnutls-c++-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: 536441e52d20ce2baedff3d6c451b1da6323a58a7ebf6945a3b018a5b2f54ddc
gnutls-c++-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: 536441e52d20ce2baedff3d6c451b1da6323a58a7ebf6945a3b018a5b2f54ddc
gnutls-dane-3.6.16-8.el8_9.aarch64.rpm SHA-256: 3516a430091a71310a3673212df2bad4bc8d7ab7424f4e77cd9206684bdc2566
gnutls-dane-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: f2e655b3f53dc931139828e8782f81519e3562d49e86a75e9c10da3dd3a4b3c8
gnutls-dane-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: f2e655b3f53dc931139828e8782f81519e3562d49e86a75e9c10da3dd3a4b3c8
gnutls-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: 6eaad43d3fb64d3b2ec9c15185428925fefe2170ccf98ec12a6d373351d5fa95
gnutls-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: 6eaad43d3fb64d3b2ec9c15185428925fefe2170ccf98ec12a6d373351d5fa95
gnutls-debugsource-3.6.16-8.el8_9.aarch64.rpm SHA-256: 441916da2e2a05c50633ce67af84e6f3fabe544c52715271f389bcf141536c98
gnutls-debugsource-3.6.16-8.el8_9.aarch64.rpm SHA-256: 441916da2e2a05c50633ce67af84e6f3fabe544c52715271f389bcf141536c98
gnutls-devel-3.6.16-8.el8_9.aarch64.rpm SHA-256: 78b4e3278a3181ad878fe06348a78cb545eb5389f9480ec88e9b1249c64e0adb
gnutls-utils-3.6.16-8.el8_9.aarch64.rpm SHA-256: eb4588776d7a77785a764f7bb5a7d6fe76ac21190415fcc1b82f6fbc4f3221a0
gnutls-utils-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: 5d0b1f275edf85ff404b3c263ff795f85a2f863f6819062c6b24ce049a301afa
gnutls-utils-debuginfo-3.6.16-8.el8_9.aarch64.rpm SHA-256: 5d0b1f275edf85ff404b3c263ff795f85a2f863f6819062c6b24ce049a301afa

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility