Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 09 Oct 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gnu
Gnu gnutls |
|
| Vendors & Products |
Gnu
Gnu gnutls |
Fri, 09 Oct 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-640 |
Fri, 09 Oct 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | GnuTLS 3.8.13 Hostname Verification Bypass Enables Eavesdropping | gnutls: gnutls: Information disclosure via hostname verification bypass |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Thu, 08 Oct 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | GnuTLS 3.8.13 Hostname Verification Bypass Enables Eavesdropping | |
| Weaknesses | CWE-640 |
Thu, 08 Oct 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A hostname verification bypass in GnuTLS v3.8.13 allows attackers to circumvent the Common Name fallback mechanism and eavesdrop on communications via a crafted certificate. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-10-08T16:35:41.361Z
Reserved: 2026-09-10T00:00:00.000Z
Link: CVE-2026-88647
No data.
Status : Awaiting Analysis
Published: 2026-10-08T17:17:17.783
Modified: 2026-10-08T21:33:42.423
Link: CVE-2026-88647
OpenCVE Enrichment
Updated: 2026-10-09T07:30:17Z