Security Advisory

CVE-2026-33845

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-30 17:41:34
Last updated 2026-07-20 12:04:59
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset, leading to an integer underflow during reassembly and resulting in an out-of-bounds read. This issue is remotely exploitable and may cause information disclosure or denial of service.