Known vulnerabilities in libgnutlsxx30
Vendor:
SUSE
Software:
libgnutlsxx30
Software CPE:
cpe:2.3:o:suse:libgnutlsxx30:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
19
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (19)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU128580 - Information Exposure Through Timing Discrepancy CVE-2026-5419 |
CWE-208 | Low | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 6 more |
||
| #VU128578 - Out-of-bounds write CVE-2026-42015 |
CWE-787 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 19 more |
||
| #VU128577 - Out-of-bounds read CVE-2026-5260 |
CWE-125 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 18 more |
||
| #VU128576 - Use After Free CVE-2026-42014 |
CWE-416 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 19 more |
||
| #VU128575 - Improper Certificate Validation CVE-2026-42013 |
CWE-295 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 19 more |
||
| #VU128574 - Improper Certificate Validation CVE-2026-42012 |
CWE-295 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026052063 SB2026052087 and 16 more |
||
| #VU128573 - Improper Certificate Validation CVE-2026-42011 |
CWE-295 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026052063 SB2026052087 and 13 more |
||
| #VU128572 - Improper Certificate Validation CVE-2026-3833 |
CWE-295 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 18 more |
||
| #VU128571 - Improper Authentication CVE-2026-42010 |
CWE-287 | High | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 19 more |
||
| #VU128570 - Heap-based Buffer Overflow CVE-2026-33845 |
CWE-122 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB20260509148 SB2026052063 and 14 more |
||
| #VU128569 - Always-Incorrect Control Flow Implementation CVE-2026-42009 |
CWE-670 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 22 more |
||
| #VU128568 - Heap-based Buffer Overflow CVE-2026-33846 |
CWE-122 | Medium | 3.8.3-150600.4.20.1 | 30.04.2026 |
SB2026043071 SB2026051569 SB2026051570 and 19 more |
||
| #VU122491 - Resource exhaustion CVE-2025-14831 |
CWE-400 | Medium | 3.8.3-150600.4.17.1 | 10.02.2026 |
SB2026021004 SB2026021048 SB2026021061 and 20 more |
||
| #VU118650 - Stack-based buffer overflow CVE-2025-9820 |
CWE-121 | Low | 3.8.3-150600.4.12.1 | 20.11.2025 |
SB2025112055 SB2025112746 SB2025112747 and 18 more |
||
| #VU112995 - NULL Pointer Dereference CVE-2025-6395 |
CWE-476 | Medium | 3.8.3-150600.4.9.1 | 16.07.2025 |
SB20250716122 SB20250716124 SB20250716141 and 70 more |
||
| #VU112994 - NULL Pointer Dereference CVE-2025-32990 |
CWE-476 | Low | 3.8.3-150600.4.9.1 | 16.07.2025 |
SB20250716122 SB20250716123 SB20250716124 and 79 more |
||
| #VU112993 - Double Free CVE-2025-32988 |
CWE-415 | Medium | 3.8.3-150600.4.9.1 | 16.07.2025 |
SB20250716122 SB20250716124 SB20250716141 and 73 more |
||
| #VU112992 - Heap-based Buffer Overflow CVE-2025-32989 |
CWE-122 | High | 3.8.3-150600.4.9.1 | 16.07.2025 |
SB20250716122 SB20250716124 SB20250716141 and 46 more |
||
| #VU104044 - Resource exhaustion CVE-2024-12243 |
CWE-400 | Medium | 3.8.3-150600.4.6.2 | 18.02.2025 |
SB2025021831 SB2025021832 SB2025021835 and 65 more |