CVE-2026-41989
EUVD-2026-2519223.04.2026, 05:16
Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| gnupg | libgcrypt | 1.8.8 ≤ 𝑥 < 1.10.4 | CNA |
| gnupg | libgcrypt | 1.11.0 ≤ 𝑥 < 1.11.3 | CNA |
| gnupg | libgcrypt | 1.12.0 ≤ 𝑥 < 1.12.2 | CNA |
Debian Releases
Ubuntu Releases
Common Weakness Enumeration