Fedora Account System
Red Hat Associate
Red Hat Customer
gnutls compares nameConstraints labels using a case-sensitive memcmp path without an ascii-casefold canonicalization step. when excludedSubtrees/permittedSubtrees dNSName (dns) or rfc822Name (email) constraints are present, attacker-controlled casing differences in the leaf certificate SAN can cause a false accept (policy bypass) where the certificate should be rejected.
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:20611 https://access.redhat.com/errata/RHSA-2026:20611
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:20613 https://access.redhat.com/errata/RHSA-2026:20613
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:20612 https://access.redhat.com/errata/RHSA-2026:20612
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:26409 https://access.redhat.com/errata/RHSA-2026:26409
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:30004 https://access.redhat.com/errata/RHSA-2026:30004
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:30850 https://access.redhat.com/errata/RHSA-2026:30850
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On Via RHSA-2026:30849 https://access.redhat.com/errata/RHSA-2026:30849
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions Via RHSA-2026:32962 https://access.redhat.com/errata/RHSA-2026:32962
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:33125 https://access.redhat.com/errata/RHSA-2026:33125
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:41921 https://access.redhat.com/errata/RHSA-2026:41921
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2026:43575 https://access.redhat.com/errata/RHSA-2026:43575
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.19 Via RHSA-2026:57402 https://access.redhat.com/errata/RHSA-2026:57402
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.17 Via RHSA-2026:60019 https://access.redhat.com/errata/RHSA-2026:60019
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.12 Via RHSA-2026:59831 https://access.redhat.com/errata/RHSA-2026:59831
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.16 Via RHSA-2026:62549 https://access.redhat.com/errata/RHSA-2026:62549
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.14 Via RHSA-2026:62409 https://access.redhat.com/errata/RHSA-2026:62409
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.18 Via RHSA-2026:65851 https://access.redhat.com/errata/RHSA-2026:65851
This issue has been addressed in the following products: Red Hat OpenShift Container Platform 4.13 Via RHSA-2026:65839 https://access.redhat.com/errata/RHSA-2026:65839