GNU
Gnutls: vulnerabilidades y CVE
Gnutls tiene 89 vulnerabilidades publicadas, 17 de ellas en los últimos 12 meses. 8 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE89
Últimos 12 meses17
Críticas8
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-42014 | Media (6.6) | 0.20% | — | 16 jun 2026 | A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN… |
| CVE-2026-5419 | Baja (3.7) | 0.63% | — | 1 jun 2026 | A flaw was found in gnutls. The PKCS#7 padding check, performed during decryption, was not constant-time. This timing side-channel could allow a remote attacker to potentially leak sensitive information about the… |
| CVE-2026-10028 | Media (4.3) | 0.18% | — | 28 may 2026 | A flaw was found in glib-networking. A remote attacker can exploit this vulnerability by presenting a specially crafted certificate chain to an application that uses glib-networking with the GnuTLS backend enabled and… |
| CVE-2026-5260 | Alta (8.2) | 0.95% | — | 26 may 2026 | A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread.… |
| CVE-2026-42015 | Media (5.3) | 0.92% | — | 26 may 2026 | A flaw was found in gnutls. An off-by-one error exists in the PKCS#12 bag element bounds check. This vulnerability allows an remote attacker to write past the internal array of a PKCS#12 bag when appending to a bag that… |
| CVE-2026-42013 | Alta (8.2) | 0.56% | — | 26 may 2026 | A flaw was found in gnutls. When validating certificates, an oversized Subject Alternative Name (SAN) could cause the validation process to incorrectly fall back to checking the Common Name (CN) field. This could allow… |
| CVE-2026-42012 | Alta (7.1) | 0.49% | — | 26 may 2026 | A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names… |
| CVE-2026-42009 | Alta (7.5) | 1.1% | — | 18 may 2026 | A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer Security (DTLS) packet reordering logic. The comparator function, responsible for ordering DTLS packets by sequence… |
| CVE-2026-42011 | Alta (7.4) | 0.57% | — | 7 may 2026 | A flaw was found in gnutls. This vulnerability occurs because permitted name constraints were incorrectly ignored when previous Certificate Authorities (CAs) only had excluded name constraints. A remote attacker could… |
| CVE-2026-42010 | Crítica (9.8) | 0.94% | — | 7 may 2026 | A flaw was found in gnutls. Servers configured with RSA-PSK (Rivest–Shamir–Adleman – Pre-Shared Key) wrongfully matched usernames containing a NUL character with truncated usernames. A remote attacker could exploit this… |
| CVE-2026-33846 | Alta (7.5) | 1.1% | — | 4 may 2026 | A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of GnuTLS. The issue arises in merge_handshake_packet() where incoming handshake fragments are matched and merged based solely… |
| CVE-2026-3833 | Alta (7.4) | 0.89% | — | 30 abr 2026 | A flaw was found in gnutls. This vulnerability occurs because gnutls performs case-sensitive comparisons of `nameConstraints` labels, specifically for `dNSName` (DNS) or `rfc822Name` (email) constraints within… |
| CVE-2026-3832 | Baja (3.7) | 0.85% | — | 30 abr 2026 | A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol (OCSP) response during a TLS handshake. Due to a logic error in how… |
| CVE-2026-33845 | Crítica (9.1) | 0.89% | — | 30 abr 2026 | A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset, leading to an integer underflow during reassembly and resulting in an out-of-bounds read. This issue is remotely… |
| CVE-2026-1584 | Alta (7.5) | 1.3% | — | 9 abr 2026 | A flaw was found in gnutls. A remote, unauthenticated attacker can exploit this vulnerability by sending a specially crafted ClientHello message with an invalid Pre-Shared Key (PSK) binder value during the TLS… |
| CVE-2025-14831 | Media (5.3) | 0.63% | — | 9 feb 2026 | A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of… |
| CVE-2025-9820 | Media (4) | 0.23% | — | 26 ene 2026 | A flaw was found in the GnuTLS library, specifically in the gnutls_pkcs11_token_init() function that handles PKCS#11 token initialization. When a token label longer than expected is processed, the function writes past… |
| CVE-2025-6395 | Media (6.5) | 0.72% | — | 10 jul 2025 | A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite(). |
| CVE-2025-32990 | Alta (8.2) | 0.83% | — | 10 jul 2025 | A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certtool utility. When it reads certain settings from a template file, it allows an attacker to cause an… |
| CVE-2025-32989 | Media (5.3) | 1.4% | — | 10 jul 2025 | A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious… |
| CVE-2025-32988 | Alta (8.2) | 1.4% | — | 10 jul 2025 | A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the export logic of Subject Alternative Name (SAN) entries containing an otherName. If the type-id OID is… |
| CVE-2024-12243 | Media (5.3) | 1.3% | — | 10 feb 2025 | A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data processing. Due to an inefficient algorithm in libtasn1, decoding certain DER-encoded certificate data can take excessive time, leading to increased… |
| CVE-2024-28834 | Media (5.3) | 0.72% | — | 21 mar 2024 | A flaw was found in GnuTLS. The Minerva attack is a cryptographic vulnerability that exploits deterministic behavior in systems like GnuTLS, leading to side-channel leaks. In specific scenarios, such as when using the… |
| CVE-2024-28835 | Media (5) | 0.39% | — | 21 mar 2024 | A flaw has been discovered in GnuTLS where an application crash can be induced when attempting to verify a specially crafted .pem bundle using the "certtool --verify-chain" command. |
| CVE-2024-0567 | Alta (7.5) | 1.4% | — | 16 ene 2024 | A vulnerability was found in GnuTLS, where a cockpit (which uses gnuTLS) rejects a certificate chain with distributed trust. This issue occurs when validating a certificate chain with cockpit-certificate-ensure. This… |
| CVE-2024-0553 | Alta (7.5) | 1.6% | — | 16 ene 2024 | A vulnerability was found in GnuTLS. The response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from the response times of ciphertexts with correct PKCS#1 v1.5 padding. This issue may allow a remote… |
| CVE-2023-5981 | Media (5.9) | 1.3% | — | 28 nov 2023 | A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding. |
| CVE-2023-0361 | Alta (7.4) | 1.4% | — | 15 feb 2023 | A timing side-channel in the handling of RSA ClientKeyExchange messages was discovered in GnuTLS. This side-channel can be sufficient to recover the key encrypted in the RSA ciphertext across a network in a… |
| CVE-2021-4209 | Media (6.5) | 1.7% | — | 24 ago 2022 | A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-length input may cause undefined behavior. This flaw leads to a denial of service after… |
| CVE-2022-2509 | Alta (7.5) | 2.0% | — | 1 ago 2022 | A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function. |