VYPR
Low severity3.7NVD Advisory· Published Jun 23, 2026· Updated Jul 31, 2026

CVE-2026-56968

CVE-2026-56968

Description

GNU SASL before 2.2.4 lacks sanitization of a short challenge in _gsasl_ntlm_client_step in the NTLM client, which could result in memory disclosure via a crafted server.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.