REDHAT-BUG-2467451: Use After Free
Published May 6, 2026
·Updated
libgnutls: Fix use-after-free in gnutlspkcs11tokensetpin Changing the Security Officer PIN with gnutlspkcs11tokensetpin() with oldpin == NULL for a token lacking a protected authentication path led to a use-after-free.
Affected Software
1 affected component
GnuTLS libgnutls
Event History
May 6, 2026
Data Sourced
via Red Hat·07:53 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2467451?
The severity of REDHAT-BUG-2467451 is classified as medium (4).
2
How do I fix REDHAT-BUG-2467451?
To fix REDHAT-BUG-2467451, update the GnuTLS library to the latest version that addresses this vulnerability.
3
What is the risk associated with REDHAT-BUG-2467451?
The risk associated with REDHAT-BUG-2467451 is rated as 19, indicating a medium-level threat.
4
What type of vulnerability is REDHAT-BUG-2467451?
REDHAT-BUG-2467451 is a use-after-free vulnerability found in the GnuTLS library.
5
What software is affected by REDHAT-BUG-2467451?
REDHAT-BUG-2467451 affects the GnuTLS library (libgnutls).