Buffer Overflow Vulnerability in GnuTLS Library Affects Multiple Applications
CVE-2025-9820
Key Information:
- Vendor
Red Hat
- Status
- Vendor
- CVE Published:
- 26 January 2026
What is CVE-2025-9820?
A programming flaw within the GnuTLS library, particularly in the gnutls_pkcs11_token_init() function, leads to unsafe handling of PKCS#11 token labels. If a token label exceeds expected length, it results in a buffer overflow that can cause application crashes. This vulnerability may also be exploited to execute arbitrary code under certain conditions, endangering systems reliant on GnuTLS and potentially allowing attackers to escalate privileges or cause denial-of-service conditions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Red Hat Enterprise Linux 10 0:3.8.10-3.el10_1
Red Hat Enterprise Linux 9 0:3.8.3-10.el9_7
Red Hat Enterprise Linux 9 0:3.8.3-10.el9_7
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved