📦 Gnutls

by Gnu

🔍 What is Gnutls?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-20231

CRITICAL CVSS 9.8 Mar 12, 2021

This CVE-2021-20231 is a critical use-after-free vulnerability in GnuTLS that occurs when a client sends a key_share extension, potentially leading to memory corruption. Attackers could exploit this t...

CVE-2024-0567

HIGH CVSS 7.5 Jan 16, 2024

A vulnerability in GnuTLS causes Cockpit to reject certificate chains with distributed trust when using cockpit-certificate-ensure, allowing unauthenticated remote attackers to trigger denial of servi...

CVE-2023-0361

HIGH CVSS 7.4 Feb 15, 2023

This CVE describes a timing side-channel vulnerability in GnuTLS that allows attackers to perform Bleichenbacher-style attacks against RSA encryption. By sending specially crafted messages to vulnerab...

CVE-2025-32990

MEDIUM CVSS 6.5 Jul 10, 2025

This CVE describes a heap-buffer-overflow vulnerability in GnuTLS's certtool utility when parsing template files. An attacker can trigger memory corruption leading to denial-of-service (system crash)....

CVE-2025-32989

MEDIUM CVSS 5.3 Jul 10, 2025

A heap-buffer-overread vulnerability in GnuTLS allows attackers to create malicious certificates with malformed Certificate Transparency extensions that leak sensitive information during certificate v...