CVE-2026-5260High· 8.2▾ TwilightA flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corrupti…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 45.1 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.7%
A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corruption vulnerability could lead to information disclosure.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-4582Medium· 4.8Buffer Over-read, Off-by-one Error vulnerability in RTI Connext Professional (Core Libraries) allows File Manipulation, Overread Buffers.
CVE-2026-2394Medium· 6.3Buffer Over-read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.
CVE-2026-70652Nonelibvips is a fast image processing library with low memory needs
CVE-2026-3203Medium· 5.5Buffer Over-read in Wireshark
CVE-2026-76885Low· 3.1Buffer Over-read in Wireshark
CVE-2026-76884Low· 3.1Buffer Over-read in Wireshark