PatchDay Alert

CVE

CVE-2026-42009

0field notes · 1digest CVSS 7.5


Daily digests

GnuTLS has a bug in how it reorders DTLS packets. When two packets arrive with the same sequence number, the sorting logic produces undefined behavior that can crash the process. A remote attacker can trigger this by sending duplicate-sequence DTLS packets, causing a denial of service. This only affects services using DTLS (UDP-based TLS), not standard TLS over TCP.

Get the digest

Free. Weekday mornings. Plain English CVE triage.

Check your inbox to confirm.