CVE-2026-81625: Stack buffer overflow in Greenbone OS and openvas-scanner
Published Aug 27, 2026
·Updated
A remote attacker with user privileges may use a malicious or compromised NASL vulnerability test (VT) on the affected products to trigger a stack buffer overflow and gain full access on the compromised system.
Affected Software
2 affected components
Greenbone Greenbone OS
openvas-scanner
Event History
Aug 27, 2026
CVE Published
via MITRE·09:06 AM
Data Sourced
via MITRE·09:06 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who is realistically exposed to exploitation?
Systems running Greenbone OS or openvas-scanner are exposed if an attacker already has user privileges and can use a malicious or compromised NASL vulnerability test (VT). The issue is remotely exploitable under those conditions.
2
What level of access can exploitation provide?
Successful exploitation can give the attacker full access to the compromised system. The vulnerability affects confidentiality, integrity, and availability.