|
|
Log in / Subscribe / Register

gnupg: code execution

Package(s):gnupg, gnupg2 CVE #(s):CVE-2015-1607
Created:April 1, 2015 Updated:April 1, 2015
Description: From the Ubuntu advisory:

Hanno Böck discovered that GnuPG incorrectly handled certain malformed keyrings. If a user or automated system were tricked into opening a malformed keyring, a remote attacker could use this issue to cause GnuPG to crash, resulting in a denial of service, or possibly execute arbitrary code.

Alerts:
openSUSE openSUSE-SU-2015:2241-1 gpg2 2015-12-10
openSUSE openSUSE-SU-2015:2153-1 GnuPG 2015-11-30
Mageia MGASA-2015-0359 gnupg 2015-09-13
Ubuntu USN-2554-1 gnupg, gnupg2 2015-04-01

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds