CVE-2026-42009High· 7.5▾ TwilightA flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer Security (DTLS) packet reordering logic. The comparator function, responsible for ordering DTLS packets by sequence numbers, did not cor…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 41.3 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Exploit-prediction probability, daily snapshots since Jul 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
1.3%
Last analysed / modified upstream
A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer Security (DTLS) packet reordering logic. The comparator function, responsible for ordering DTLS packets by sequence numbers, did not correctly handle packets with duplicate sequence numbers. This could lead to unstable packet ordering or undefined behavior, resulting in a denial of service.
gnutlshardened_imagesopenshift_container_platform = 4.0enterprise_linux = 6.0enterprise_linux = 7.0enterprise_linux = 8.0enterprise_linux_for_els = 8.10enterprise_linux_for_ibm_z_systems = 8.0_s390xenterprise_linux_for_ibm_z_systems_els = 8.10enterprise_linux_for_power_little_endian = 8.0_ppc64leenterprise_linux_for_power_little_endian_els = 8.10enterprise_linux = 9.0enterprise_linux = 9.8enterprise_linux_for_els = 9.8enterprise_linux_for_eus = 9.8enterprise_linux_for_ibm_z_systems = 9.0_s390xenterprise_linux_for_ibm_z_systems_els = 9.8enterprise_linux_for_ibm_z_systems_eus = 9.8enterprise_linux_for_power_little_endian = 9.0_ppc64leenterprise_linux_for_power_little_endian_els = 9.8enterprise_linux_for_power_little_endian_eus = 9.8enterprise_linux_for_update_services_for_sap_solutions = 9.8enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions = 9.8enterprise_linux = 10.0enterprise_linux = 10.2enterprise_linux_for_els = 10.2enterprise_linux_for_eus = 10.2enterprise_linux_for_ibm_z_systems = 10.2enterprise_linux_for_ibm_z_systems_els = 10.2enterprise_linux_for_ibm_z_systems_eus = 10.2enterprise_linux_for_power_little_endian = 10.0enterprise_linux_for_power_little_endian = 10.2enterprise_linux_for_power_little_endian_els = 10.2enterprise_linux_for_power_little_endian_eus = 10.2Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-42010High· 7.1A flaw was found in gnutls
CVE-2026-33846High· 7.5A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of GnuTLS
CVE-2026-3833Medium· 6.5A flaw was found in gnutls
CVE-2026-33845High· 7.5A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset, leading to an integer underflow during reassembly and resulting in an out-of-bounds read
CVE-2026-91752High· 7.5GNU libextractor before 1.15 contains a stack-based buffer overflow vulnerability in the process_star_office function that sizes a variable-length stack array from attacker-controlled OLE2 stream data
CVE-2026-90829Medium· 5.3A weakness has been identified in GNU Binutils 2.47