Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-68973

Опубликовано: 28 дек. 2025
Источник: nvd
CVSS3: 7.8
CVSS3: 7
EPSS Низкий

Описание

In GnuPG before 2.4.9, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.)

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnupg:gnupg:*:*:*:*:-:*:*:*
Версия до 2.4.8 (включая)

EPSS

Процентиль: 1%
0.00012
Низкий

7.8 High

CVSS3

7 High

CVSS3

Дефекты

CWE-675
CWE-787

Связанные уязвимости

CVSS3: 7.8
ubuntu
18 дней назад

In GnuPG before 2.4.9, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.)

CVSS3: 7.8
msrc
17 дней назад

In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.)

CVSS3: 7.8
debian
18 дней назад

In GnuPG before 2.4.9, armor_filter in g10/armor.c has two increments ...

CVSS3: 7.8
github
18 дней назад

In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input.

CVSS3: 9.6
fstec
19 дней назад

Уязвимость функции armor_filter() программы для шифрования информации и создания электронных цифровых подписей GnuPG, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 1%
0.00012
Низкий

7.8 High

CVSS3

7 High

CVSS3

Дефекты

CWE-675
CWE-787