CVE-2026-3832EPSS p50.3%
CVE-2026-3832CVE-2026-3832
gnu / gnutls
Description
A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol (OCSP) response during a TLS handshake. Due to a logic error in how gnutls processes multi-record OCSP responses, a client with OCSP verification enabled may incorrectly accept a revoked server certificate, potentially leading to a compromise of trust.
Scoring
| CVSS | 3.7 () |
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N |
| EPSS | 0.72% probability of exploitation · percentile 50.3% · 2026-08-03T12:00:16Z |
| Last modified | 2026-07-13 |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.