CVE detail
CVE-2026-42010
A flaw was found in gnutls. Servers configured with RSA-PSK (Rivest–Shamir–Adleman – Pre-Shared Key) wrongfully matched usernames containing a NUL character with truncated usernames. A remote attacker could exploit this by sending a specially crafted username, leading to an authentication bypass. This vulnerability allows an attacker to gain unauthorized access by circumventing the authentication process.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 30.0 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
25 source links · newest first
Information published.
vendormsrc.microsoft.comMay 15, 2026, 8:02 AM- https://access.redhat.com/errata/RHSA-2026:40762access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:41921access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-42010.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comMay 7, 2026, 12:16 PM No excerpt available.
referencewww.gnutls.orgMay 7, 2026, 12:16 PM- https://bugzilla.redhat.com/show_bug.cgi?id=2467289bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/security/cve/CVE-2026-42010access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:36006access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:36005access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:36004access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:34790access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:34788access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:34764access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:33125access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:32962access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:30850access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:30849access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:30004access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:29197access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:26409access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:26319access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:20613access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:20612access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:20611access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM - https://access.redhat.com/errata/RHSA-2026:13274access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 7, 2026, 12:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-42009CVSS 7.5 · High
A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer Security (DTLS) packet reordering logic. The comparator function, responsible…
- CVE-2026-3833CVSS 6.5 · Medium
A flaw was found in gnutls. This vulnerability occurs because gnutls performs case-sensitive comparisons of `nameConstraints` labels, specifically for `dNSName` (DNS) or `rfc822Na…
- CVE-2026-3832CVSS 3.7 · Low
A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol (OCSP) response during a TLS ha…
- CVE-2026-13757CVSS 6.2 · Medium
A flaw was found in p11-kit. The RPC message attribute parsing functions p11_rpc_message_get_attribute() and p11_rpc_message_get_attribute_array_value() form a mutually-recursive…
- CVE-2026-13595CVSS 6.8 · Medium
A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Minix, Solaris x86, and UnixWare partition probers cache a raw pointer to a paren…
- CVE-2026-55653CVSS 4.3 · Medium
A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path. This occurs during FIPS (Fed…