Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-42014

Опубликовано: 19 июн. 2026
Источник: msrc
CVSS3: 6.6
EPSS Низкий

Описание

Gnutls: fix use-after-free in gnutls_pkcs11_token_set_pin

EPSS

Процентиль: 5%
0.0015
Низкий

6.6 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.6
ubuntu
около 2 месяцев назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

CVSS3: 6.6
redhat
3 месяца назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

CVSS3: 6.6
nvd
около 2 месяцев назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function, used for changing the Security Officer PIN, can lead to a use-after-free vulnerability. This occurs when an attacker attempts to change the PIN with a NULL old PIN for a token that lacks a protected authentication path.

CVSS3: 6.6
debian
около 2 месяцев назад

A flaw was found in GnuTLS. The `gnutls_pkcs11_token_set_pin` function ...

suse-cvrf
16 дней назад

Security update for gnutls

EPSS

Процентиль: 5%
0.0015
Низкий

6.6 Medium

CVSS3