Low severity3.7NVD Advisory· Published Jun 1, 2026· Updated Jul 22, 2026
CVE-2026-5419
CVE-2026-5419
Description
A flaw was found in gnutls. The PKCS#7 padding check, performed during decryption, was not constant-time. This timing side-channel could allow a remote attacker to potentially leak sensitive information about the padding bytes through observable timing differences. This vulnerability is a form of information disclosure.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
11- access.redhat.com/errata/RHSA-2026:13274nvd
- access.redhat.com/errata/RHSA-2026:20612nvd
- access.redhat.com/errata/RHSA-2026:20613nvd
- access.redhat.com/errata/RHSA-2026:26319nvd
- access.redhat.com/errata/RHSA-2026:26409nvd
- access.redhat.com/errata/RHSA-2026:29197nvd
- access.redhat.com/errata/RHSA-2026:30004nvd
- access.redhat.com/errata/RHSA-2026:32962nvd
- access.redhat.com/security/cve/CVE-2026-5419nvd
- bugzilla.redhat.com/show_bug.cginvd
- www.gnutls.org/security-new.htmlnvd
News mentions
0No linked articles in our index yet.