Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-3345
_gcry_md_block_write in cipher/hash-common.c in Libgcrypt version 1.9.0 has a heap-based buffer overflow when the digest final function sets a large count value. It is recommended to upgrade to 1.9.1 or later.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.057
EPSS Ranking
89.9%
CVSS Severity
CVSS v3 Score
7.8
CVSS v2 Score
7.2
References
https://bugs.gentoo.org/show_bug.cgi?id=767814
https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git%3Ba=commit%3Bh=512c0c75276949f13b6373b5c04f7065af750b08
https://gnupg.org
https://lists.gnupg.org/pipermail/gnupg-announce/2021q1/000455.html
https://lists.gnupg.org/pipermail/gnupg-announce/2021q1/000456.html
https://www.oracle.com//security-alerts/cpujul2021.html
https://bugs.gentoo.org/show_bug.cgi?id=767814
https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git%3Ba=commit%3Bh=512c0c75276949f13b6373b5c04f7065af750b08
https://gnupg.org
https://lists.gnupg.org/pipermail/gnupg-announce/2021q1/000455.html
https://lists.gnupg.org/pipermail/gnupg-announce/2021q1/000456.html
https://www.oracle.com//security-alerts/cpujul2021.html
Products affected by CVE-2021-3345
Gnupg
»
Libgcrypt
»
Version:
1.9.0
cpe:2.3:a:gnupg:libgcrypt:1.9.0
Oracle
»
Communications Billing And Revenue Management
»
Version:
12.0.0.3.0
cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0.0.3.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved