CVE-2026-33845

high
Published 2026-04-30 Β· Modified 2026-05-26
CVSS v3
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS v4 NEW
β€”
not yet in upstream
VIR risk
7.5

Description

RHSA-2026:20612: gnutls security update (Important)

Predictions

Exploit likelihood
83%
Patch ETA
β€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Red Hat Errata β€” Red Hat Inc. Β· View original β†— Β· Open-Errata-API

Description gnutls: GnuTLS: Denial of Service via DTLS zero-length fragment Red Hat statement This issue marked as Important severity due to its remote, pre-authentication reachability and its impact on a critical DTLS handshake parsing path. The vulnerability can be triggered by an unauthenticated attacker sending crafted DTLS handshake fragments, requiring no prior access or interaction. It…

Description

gnutls: GnuTLS: Denial of Service via DTLS zero-length fragment

Red Hat statement

This issue marked as Important severity due to its remote, pre-authentication reachability and its impact on a critical DTLS handshake parsing path. The vulnerability can be triggered by an unauthenticated attacker sending crafted DTLS handshake fragments, requiring no prior access or interaction. It leads to an out-of-bounds read caused by an integer underflow in fragment reassembly, operating entirely on attacker-controlled input. Such flaws in low-level protocol parsing are particularly serious, as they may result in disclosure of sensitive process memory, including cryptographic or session-related data, and can also cause reliable application crashes leading to denial of service. Given that DTLS is commonly used in network-facing services such as VPNs and real-time communication systems, the exposure surface is broad. The combination of unauthenticated remote exploitation, memory safety violation, and potential confidentiality and availability impact justifies classifying this issue as high severity rather than moderate.

CVSS v3: 7.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)

Errata / fixed releases

ProductPackageAdvisoryReleased
Red Hat Enterprise Linux 10gnutls-0:3.8.10-4.el10_2RHSA-2026:206132026-05-26T00:00:00Z
Red Hat Enterprise Linux 8gnutls-0:3.6.16-8.el8_10.6RHSA-2026:206112026-05-26T00:00:00Z
Red Hat Enterprise Linux 8gnutls-0:3.6.16-8.el8_10.6RHSA-2026:206112026-05-26T00:00:00Z
Red Hat Hardened Imagesgnutls-main-3.8.13-1.hum1RHSA-2026:132742026-05-02T00:00:00Z

Package state

ProductPackageState
Red Hat Enterprise Linux 6gnutlsAffected
Red Hat Enterprise Linux 7gnutlsAffected
Red Hat Enterprise Linux 9gnutlsAffected
Red Hat OpenShift Container Platform 4rhcosAffected

Apply commands

bash fix
Apply RHSA-2026:20613 for Red Hat Enterprise Linux 10
yum update -y gnutls
# or:
dnf upgrade -y gnutls

Affected

VendorProductVersion
redhatRed Hat Enterprise Linux 6Affected
redhatRed Hat Enterprise Linux 7Affected
redhatRed Hat Enterprise Linux 9Affected
redhatRed Hat OpenShift Container Platform 4Affected

OS impact

suse SUSE Affected 1 release
VersionStatusFixed in
β€” Affected β€”
redhat Red Hat Mixed 7 releases
VersionStatusFixed in
10.0 Affected β€”
9.0 Affected β€”
9 Fixed β€”
8.0 Affected β€”
8 Fixed β€”
7.0 Affected β€”
6.0 Affected β€”
debian Debian Fixed 5 releases
VersionStatusFixed in
trixie Fixed 3.8.9-3+deb13u4
sid Fixed 3.8.13-1
forky Fixed 3.8.13-1
bullseye Fixed 3.7.1-5+deb11u10
bookworm Fixed 3.7.9-2+deb12u7

Application impact

VendorProductVersionsFixed
gnugnutls-
redhat redhatopenshift_container_platform4.0

References

CWEs

CWE-191

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.