THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-32989 (MEDIUM 5.3) — A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious user to create a certificate containing a malformed SCT extensi

[NVD] CVE-2025-32989 (MEDIUM 5.3) — A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious user to create a certificate containing a malformed SCT extensi

lownvdPublished 2025-07-10

CVE-2025-32989 CVSS: 5.3 MEDIUM Published: 2025-07-10T08:15:24.430

A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious user to create a certificate containing a malformed SCT extension (OID 1.3.6.1.4.1.11129.2.4.2) that contains sensi

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-32989