Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 17

Количество 17

github логотип

GHSA-7hhj-8fwv-m5hc

2 месяца назад

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
EPSS: Низкий
ubuntu логотип

CVE-2026-42012

2 месяца назад

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
EPSS: Низкий
redhat логотип

CVE-2026-42012

3 месяца назад

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2026-42012

2 месяца назад

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2026-42012

около 2 месяцев назад

Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans

CVSS3: 7.1
EPSS: Низкий
debian логотип

CVE-2026-42012

2 месяца назад

A flaw was found in gnutls. A remote attacker could exploit this vulne ...

CVSS3: 7.1
EPSS: Низкий
redos логотип

ROS-20260625-73-0010

около 1 месяца назад

Уязвимость gnutls

CVSS3: 7.1
EPSS: Низкий
fstec логотип

BDU:2026-09660

5 месяцев назад

Уязвимость функции gnutls_x509_crt_check_hostname2() файла lib/x509/hostname-verify.c:111,245-265 криптографической библиотеки GnuTLS, позволяющая нарушителю осуществить подмену сервера и получить несанкционированный доступ к защищаемой информации

CVSS3: 7.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2087-1

2 месяца назад

Security update for gnutls

EPSS: Низкий
rocky логотип

RLSA-2026:20611

2 месяца назад

Important: gnutls security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-20611

2 месяца назад

ELSA-2026-20611: gnutls security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2115-1

2 месяца назад

Security update for gnutls

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20778-1

2 месяца назад

Security update for gnutls

EPSS: Низкий
rocky логотип

RLSA-2026:20613

около 2 месяцев назад

Important: gnutls security update

EPSS: Низкий
rocky логотип

RLSA-2026:20612

около 2 месяцев назад

Important: gnutls security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-50346

около 1 месяца назад

ELSA-2026-50346: gnutls security fix update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-20612

около 1 месяца назад

ELSA-2026-20612: gnutls security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-7hhj-8fwv-m5hc

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
0%
Низкий
2 месяца назад
ubuntu логотип
CVE-2026-42012

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
0%
Низкий
2 месяца назад
redhat логотип
CVE-2026-42012

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-42012

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted certificate that contains Uniform Resource Identifier (URI) or Service (SRV) Subject Alternative Names (SANs). This could cause the certificate validation process to incorrectly fall back to checking DNS hostnames against the Common Name (CN), potentially allowing the attacker to spoof legitimate services or intercept sensitive information.

CVSS3: 7.1
0%
Низкий
2 месяца назад
msrc логотип
CVE-2026-42012

Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans

CVSS3: 7.1
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-42012

A flaw was found in gnutls. A remote attacker could exploit this vulne ...

CVSS3: 7.1
0%
Низкий
2 месяца назад
redos логотип
ROS-20260625-73-0010

Уязвимость gnutls

CVSS3: 7.1
0%
Низкий
около 1 месяца назад
fstec логотип
BDU:2026-09660

Уязвимость функции gnutls_x509_crt_check_hostname2() файла lib/x509/hostname-verify.c:111,245-265 криптографической библиотеки GnuTLS, позволяющая нарушителю осуществить подмену сервера и получить несанкционированный доступ к защищаемой информации

CVSS3: 7.1
0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2087-1

Security update for gnutls

2 месяца назад
rocky логотип
RLSA-2026:20611

Important: gnutls security update

2 месяца назад
oracle-oval логотип
ELSA-2026-20611

ELSA-2026-20611: gnutls security update (IMPORTANT)

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2115-1

Security update for gnutls

2 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20778-1

Security update for gnutls

2 месяца назад
rocky логотип
RLSA-2026:20613

Important: gnutls security update

около 2 месяцев назад
rocky логотип
RLSA-2026:20612

Important: gnutls security update

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-50346

ELSA-2026-50346: gnutls security fix update (IMPORTANT)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-20612

ELSA-2026-20612: gnutls security update (IMPORTANT)

около 1 месяца назад

Уязвимостей на страницу