Description
A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite().
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:HExploitability: 2.2 | Impact: 4.2Attack Vector: Network
Complexity: High
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: Low
Availability: High
Affected Packages5 packages
🔴Vulnerability Details
4OSVgnutls28 vulnerabilities↗2025-09-09 ▶ OSVgnutls28 vulnerabilities↗2025-07-14 ▶ OSVCVE-2025-6395: A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite()↗2025-07-10 ▶ GHSAGHSA-prf7-7jvx-hxj5: A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite()↗2025-07-10 ▶ 📋Vendor Advisories
5UbuntuGnuTLS vulnerabilities↗2025-09-09 ▶ UbuntuGnuTLS vulnerabilities↗2025-07-14 ▶ Red Hatgnutls: NULL pointer dereference in _gnutls_figure_common_ciphersuite()↗2025-07-10 ▶ MicrosoftGnutls: null pointer dereference in _gnutls_figure_common_ciphersuite()↗2025-07-08 ▶ DebianCVE-2025-6395: gnutls28 - A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figu...↗2025 ▶ 🕵️Threat Intelligence
3WizCVE-2025-14831 Impact, Exploitability, and Mitigation Steps | Wiz↗ ▶ WizCVE-2025-9820 Impact, Exploitability, and Mitigation Steps | Wiz↗ ▶ WizCVE-2026-1584 Impact, Exploitability, and Mitigation Steps | Wiz↗ ▶