CVE Tools

Gnutls

80 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Gnutls, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.

Gnutls CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Gnutls CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-021
2025-030
2025-040
2025-050
2025-060
2025-074
2025-080
2025-090
2025-100
2025-110
2025-120
2026-011
2026-021
2026-030
2026-044
2026-052
2026-060
2026-070
2026-080
2026-090

Severity

How the 80 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical810%
  • High2531%
  • Medium4657%
  • Low11%

Latest CVEs

The 15 most recently published vulnerabilities affecting Gnutls.

  1. CVE-2026-42009Gnutls: gnutls: denial of service via dtls packet reordering vulnerability7.5
  2. CVE-2026-42010Gnutls: gnutls: authentication bypass via nul character in username7.1
  3. CVE-2026-33845Gnutls: gnutls: denial of service via dtls zero-length fragment7.5
  4. CVE-2026-3832Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response3.7
  5. CVE-2026-3833Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison6.5
  6. CVE-2026-1584Gnutls: gnutls: remote denial of service via crafted clienthello with invalid psk binder7.5
  7. CVE-2025-14831Gnutls: gnutls: denial of service via excessive resource consumption during certificate verification5.3
  8. CVE-2025-9820Gnutls: stack-based buffer overflow in gnutls_pkcs11_token_init() function4.0
  9. CVE-2025-6395Gnutls: null pointer dereference in _gnutls_figure_common_ciphersuite()6.5
  10. CVE-2025-32990Gnutls: vulnerability in gnutls certtool template parsing6.5
  11. CVE-2025-32989Gnutls: vulnerability in gnutls sct extension parsing5.3
  12. CVE-2025-32988Gnutls: vulnerability in gnutls othername san export6.5
  13. CVE-2024-12243Gnutls: gnutls impacted by inefficient der decoding in libtasn1 leading to remote dos5.3
  14. CVE-2024-28834Gnutls: vulnerable to minerva side-channel information leak5.3
  15. CVE-2024-28835Gnutls: potential crash during chain building/verification5.0

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store