Description
A remote attacker with user privileges may use a malicious or compromised NASL vulnerability test (VT) on the affected products to trigger a stack buffer overflow and gain full access on the compromised system.
Published: 2026-08-27
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a stack buffer overflow that can be triggered by executing a malicious or compromised NASL vulnerability test (VT) on Greenbone OS and the openvas‑scanner component. When successfully triggered, it allows the attacker to execute arbitrary code and gain full system access, effectively compromising confidentiality, integrity, and availability. This weakness is identified as CWE‑787, illustrating improper handling of buffer sizes.

Affected Systems

The affected systems are Greenbone OS and the openvas‑scanner product from Greenbone. All versions of these products that are still running the vulnerable code are at risk, unless a vendor patch has been applied. The product CPE strings confirm that the vulnerability spans the main line of Greenbone’s security tools.

Risk and Exploitability

The CVSS score of 8.7 signals high severity, while the EPSS score is currently unavailable, making it unclear how frequently this flaw is being exploited in the wild. The vulnerability is not listed in the CISA KEV catalog. Attackers must be able to run a malicious NASL VT with user privileges on the target machine, indicating that the attack vector requires an authenticated user or a compromised account. If user privileges are tightly controlled, the risk is reduced; however, in environments where credentials are shared or elevated access is common, the potential for exploitation remains significant.

Generated by OpenCVE AI on August 27, 2026 at 10:36 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest security patches released by Greenbone for both Greenbone OS and openvas‑scanner.
  • Restrict the execution of NASL vulnerability tests to trusted or signed VTs, disabling or removing any custom or unverified tests.
  • Monitor system logs for anomalous buffer overflow attempts and verify that the vulnerability test framework is not accepting untrusted input.

Generated by OpenCVE AI on August 27, 2026 at 10:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 27 Aug 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 27 Aug 2026 09:30:00 +0000

Type Values Removed Values Added
Description A remote attacker with user privileges may use a malicious or compromised NASL vulnerability test (VT) on the affected products to trigger a stack buffer overflow and gain full access on the compromised system.
Title Stack buffer overflow in Greenbone OS and openvas-scanner
First Time appeared Greenbone
Greenbone greenbone Os
Greenbone openvas-scanner
Weaknesses CWE-787
CPEs cpe:2.3:a:greenbone:openvas-scanner:*:*:*:*:*:*:*:*
cpe:2.3:o:greenbone:greenbone_os:*:*:*:*:*:*:*:*
Vendors & Products Greenbone
Greenbone greenbone Os
Greenbone openvas-scanner
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Greenbone Greenbone Os Openvas-scanner
cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published:

Updated: 2026-08-27T12:12:02.884Z

Reserved: 2026-08-27T08:47:01.871Z

Link: CVE-2026-81625

cve-icon Vulnrichment

Updated: 2026-08-27T12:11:57.566Z

cve-icon NVD

Status : Received

Published: 2026-08-27T10:16:41.000

Modified: 2026-08-27T13:18:41.920

Link: CVE-2026-81625

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-27T10:45:17Z

Weaknesses