HackTesting
HomeArticlesTagsContact

CVE-2026-42015

A flaw was found in gnutls. An off-by-one error exists in the PKCS#12 bag element bounds check. This vulnerability allows an remote attacker to write past the internal array of a PKCS#12 bag when appending to a bag that already contains 32 elements. This memory corruption could lead to a denial of service (DoS) or potentially other unspecified impacts.

Credits

Red Hat would like to thank Zou Dikai for reporting this issue.

References

https://access.redhat.com/errata/RHSA-2026:13274
https://access.redhat.com/errata/RHSA-2026:20611
https://access.redhat.com/errata/RHSA-2026:20612
https://access.redhat.com/errata/RHSA-2026:20613
https://access.redhat.com/errata/RHSA-2026:26319
https://access.redhat.com/errata/RHSA-2026:26409
https://access.redhat.com/errata/RHSA-2026:29197
https://access.redhat.com/errata/RHSA-2026:30004
https://access.redhat.com/errata/RHSA-2026:30849
https://access.redhat.com/errata/RHSA-2026:30850
https://access.redhat.com/errata/RHSA-2026:32962
https://access.redhat.com/errata/RHSA-2026:33125
https://access.redhat.com/errata/RHSA-2026:41921
https://access.redhat.com/errata/RHSA-2026:43575
https://access.redhat.com/security/cve/CVE-2026-42015
https://bugzilla.redhat.com/show_bug.cgi?id=2467678
https://www.gnutls.org/security-new.html#GNUTLS-SA-2026-04-29-11
Published
May 26, 2026 21:29:32 UTC
Updated
Aug 21, 2026 11:32:10 UTC
Reserved
Apr 23, 2026 11:23:46 UTC
  • Home
  • Contact Us
  • Recently Updated CVEs
  • Articles
  • Tags
  • RSS Feed
  • Privacy Policy
© 2026 HackTesting. All rights reserved.