Security Advisory

CVE-2026-33845

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-30 17:41:34
Last updated 2026-05-27 02:16:50
Assigner redhat
State PUBLISHED

Description

A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset, leading to an integer underflow during reassembly and resulting in an out-of-bounds read. This issue is remotely exploitable and may cause information disclosure or denial of service.