ThreatCluster

Multiple CVEs Identified in Rustls Network Protocol

First seen 21 Feb 2026, 04:19 UTC Api.Msrc.Microsoft 41

Article Content

Browse articles
ThreatCluster

Two vulnerabilities have been reported in the Rustls network protocol affecting its functionality. CVE-2024-11738, published on December 6, 2024, involves a network-reachable panic in the acceptor function, while CVE-2024-32650, published on April 19, 2024, is related to an infinite loop in the connection handling process. Both vulnerabilities could impact systems using Rustls for secure communications.

Timeline

2024-04-19
CVE-2024-32650 published
2024-12-06
CVE-2024-11738 published
2026-02-18
Article published on CVE-2024-32650
2026-02-21
Article published on CVE-2024-11738