Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m4m5-7xc2-xc7g

Опубликовано: 16 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.6

Описание

A flaw was found in GnuTLS. The gnutls_pkcs11_token_set_pin function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

A flaw was found in GnuTLS. The gnutls_pkcs11_token_set_pin function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

EPSS

Процентиль: 5%
0.0015
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-825

Связанные уязвимости

CVSS3: 6.6
ubuntu
около 2 месяцев назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

CVSS3: 6.6
redhat
3 месяца назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

CVSS3: 6.6
nvd
около 2 месяцев назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

msrc
около 1 месяца назад

Gnutls: fix use-after-free in gnutls_pkcs11_token_set_pin

CVSS3: 6.6
debian
около 2 месяцев назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function ...

EPSS

Процентиль: 5%
0.0015
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-825