Skip to main content

CVE-2026-33845

CVE Details

Visit the official vulnerability details page for CVE-2026-33845 to learn more.

Initial Publication

04/30/2026

Last Update

05/03/2026

Third Party Dependency

gnutls

NIST CVE Summary

A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset, leading to an integer underflow during reassembly and resulting in an out-of-bounds read. This issue is remotely exploitable and may cause information disclosure or denial of service.

CVE Severity

7.5

Our Official Summary

Investigation is ongoing to determine how this vulnerability affects our products.

Status

Undergoing Analysis

Affected Products & Versions

VersionPaletteAIPaletteAI VerteX
1.0.7⚠️ Impacted⚠️ Impacted

Revision History

No revisions available.