CVE-2026-1584
EUVD-2026-2098609.04.2026, 18:16
A flaw was found in gnutls. A remote, unauthenticated attacker can exploit this vulnerability by sending a specially crafted ClientHello message with an invalid Pre-Shared Key (PSK) binder value during the TLS handshake. This can lead to a NULL pointer dereference, causing the server to crash and resulting in a remote Denial of Service (DoS) condition.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gnu | gnutls | - |
| redhat | hardened_images | - |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration
Vulnerability Media Exposure