Vulnerabilities
Vulnerable Software
Gnupg:  >> Gnupg  >> 2.0.4  Security Vulnerabilities
The read_block function in g10/import.c in GnuPG 1.4.x before 1.4.13 and 2.0.x through 2.0.19, when importing a key, allows remote attackers to corrupt the public keyring database or cause a denial of service (application crash) via a crafted length field of an OpenPGP packet.
CVSS Score
5.8
EPSS Score
0.024
Published
2013-01-24
Use-after-free vulnerability in kbx/keybox-blob.c in GPGSM in GnuPG 2.x through 2.0.16 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a certificate with a large number of Subject Alternate Names, which is not properly handled in a realloc operation when importing the certificate or verifying its signature.
CVSS Score
8.1
EPSS Score
0.151
Published
2010-08-05


Contact Us

Shodan ® - All rights reserved