Uncontrolled Recursion in p11-kit - CVE-2026-13757
Published: September 1, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to uncontrolled recursion in the p11_rpc_message_get_attribute and p11_rpc_message_get_attribute_array_value functions when processing nested template attributes. A remote attacker can send a specially crafted request with deeply nested attributes via the RPC Unix domain socket to cause a denial of service.
Exploitation can lead to stack exhaustion and crash the server process.
Affected software
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Anolis OS
Fedora
p11-kit
p11-kit-devel
p11-kit-server
p11-kit-trust
p11-kit-doc
p11-kit (Red Hat package)
Red Hat build of Keycloak
How to mitigate CVE-2026-13757
p11-kit - update to 0.25.0-2
p11-kit-devel - update to 0.25.0-2
p11-kit-server - update to 0.25.0-2
p11-kit-trust - update to 0.25.0-2
p11-kit-doc - update to 0.25.0-2
p11-kit (Red Hat package) - addressed in versions 0.26.4-1.el9_8, 0.26.4-1.el10_2
p11-kit - addressed in versions 0.26.4-1.fc43, 0.26.4-1.fc44
Red Hat build of Keycloak - update to 26.4.15