[CLSA-2026:1779183792] gnutls: Fix of CVE-2026-42010
Type:
security
Severity:
Critical
Release date:
2026-05-19 09:43:16 UTC
Description:
- CVE-2026-42010: server-side RSA-PSK authentication bypass via NUL-byte truncation of binary PSK identities in _gnutls_proc_rsa_psk_client_kx
Updated packages:
  • gnutls-3.8.3-9.el9_6.tuxcare.1.els4.i686.rpm
    sha:0e4552339a16c44d1dd410664c35eebb1242dbd9dcb7d9d06081e5a14b36ea70
  • gnutls-3.8.3-9.el9_6.tuxcare.1.els4.x86_64.rpm
    sha:d99e1414600e98be0dcc0b61c18687f86c10f248410ca1194da516d593595ed0
  • gnutls-c++-3.8.3-9.el9_6.tuxcare.1.els4.i686.rpm
    sha:98644a879830e2fba775f7989765490fa02b2d6e0e43f2b5ff8897cc2604a5ea
  • gnutls-c++-3.8.3-9.el9_6.tuxcare.1.els4.x86_64.rpm
    sha:2b68b80d79d4cd869e83e3c94705f331069061492449d2b0d3d813e2565040c9
  • gnutls-dane-3.8.3-9.el9_6.tuxcare.1.els4.i686.rpm
    sha:9cf888a55a6f1b0b09908e463c96cabeac72342d6a683f33d81b8e8595da798c
  • gnutls-dane-3.8.3-9.el9_6.tuxcare.1.els4.x86_64.rpm
    sha:68d42f707fe98d9016e69237c1f4d55c5d36b9eccaab6f912226da9eb013fae7
  • gnutls-devel-3.8.3-9.el9_6.tuxcare.1.els4.i686.rpm
    sha:f643a5eacef29fe207b3a13d4584e537aea768c17b0af36610dd86f5d93c3bf7
  • gnutls-devel-3.8.3-9.el9_6.tuxcare.1.els4.x86_64.rpm
    sha:7e1a13ee6fde52a64d70d3613fd6de2bb5667d44f45632df7acf05fab6c25484
  • gnutls-utils-3.8.3-9.el9_6.tuxcare.1.els4.x86_64.rpm
    sha:250a03ceb7a313349881811acfa19801208694afb30d347ddf5ca46bf9e363ff
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.