Vulnerabilities
Vulnerable Software
Gnu:  >> Gpgme  >> 1.1.3  Security Vulnerabilities
Multiple heap-based buffer overflows in the status_handler function in (1) engine-gpgsm.c and (2) engine-uiserver.c in GPGME before 1.5.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to "different line lengths in a specific order."
CVSS Score
6.8
EPSS Score
0.029
Published
2014-10-20
GnuPG 1.4.6 and earlier and GPGME before 1.1.4, when run from the command line, does not visually distinguish signed and unsigned portions of OpenPGP messages with multiple components, which might allow remote attackers to forge the contents of a message without detection.
CVSS Score
5.0
EPSS Score
0.168
Published
2007-03-06


Contact Us

Shodan ® - All rights reserved