CVE-2012-6085
24.01.2013, 01:55
The read_block function in g10/import.c in GnuPG 1.4.x before 1.4.13 and 2.0.x through 2.0.19, when importing a key, allows remote attackers to corrupt the public keyring database or cause a denial of service (application crash) via a crafted length field of an OpenPGP packet.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gnupg | gnupg | 1.4.0 |
| gnupg | gnupg | 1.4.2 |
| gnupg | gnupg | 1.4.3 |
| gnupg | gnupg | 1.4.4 |
| gnupg | gnupg | 1.4.5 |
| gnupg | gnupg | 1.4.8 |
| gnupg | gnupg | 1.4.10 |
| gnupg | gnupg | 1.4.11 |
| gnupg | gnupg | 1.4.12 |
| gnupg | gnupg | 2.0 |
| gnupg | gnupg | 2.0.1 |
| gnupg | gnupg | 2.0.3 |
| gnupg | gnupg | 2.0.4 |
| gnupg | gnupg | 2.0.5 |
| gnupg | gnupg | 2.0.6 |
| gnupg | gnupg | 2.0.7 |
| gnupg | gnupg | 2.0.8 |
| gnupg | gnupg | 2.0.10 |
| gnupg | gnupg | 2.0.11 |
| gnupg | gnupg | 2.0.12 |
| gnupg | gnupg | 2.0.13 |
| gnupg | gnupg | 2.0.14 |
| gnupg | gnupg | 2.0.15 |
| gnupg | gnupg | 2.0.16 |
| gnupg | gnupg | 2.0.17 |
| gnupg | gnupg | 2.0.18 |
| gnupg | gnupg | 2.0.19 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| gnupg |
| ||||||||||
| gnupg2 |
|
Common Weakness Enumeration
References