Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-34903

Опубликовано: 01 июл. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8
CVSS3: 6.5

Описание

GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-infra-legacy/trusty

not-affected

1.4.16-1ubuntu2.6+esm1
esm-infra/focal

DNE

esm-infra/xenial

released

1.4.20-1ubuntu3.3+esm2
focal

DNE

impish

DNE

jammy

DNE

trusty

DNE

trusty/esm

released

1.4.16-1ubuntu2.6+esm1

Показывать по

РелизСтатусПримечание
bionic

released

2.2.4-1ubuntu1.6
devel

released

2.2.27-3ubuntu3
esm-infra/bionic

not-affected

2.2.4-1ubuntu1.6
esm-infra/focal

not-affected

2.2.19-3ubuntu2.2
esm-infra/xenial

released

2.1.11-6ubuntu2.1+esm1
focal

released

2.2.19-3ubuntu2.2
impish

released

2.2.20-1ubuntu4.1
jammy

released

2.2.27-3ubuntu2.1
trusty

DNE

upstream

released

2.2.35-3

Показывать по

EPSS

Процентиль: 77%
0.0112
Низкий

5.8 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
redhat
почти 3 года назад

GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.

CVSS3: 6.5
nvd
почти 3 года назад

GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.

CVSS3: 6.5
msrc
почти 3 года назад

Описание отсутствует

CVSS3: 6.5
debian
почти 3 года назад

GnuPG through 2.3.6, in unusual situations where an attacker possesses ...

suse-cvrf
почти 3 года назад

Security update for gpg2

EPSS

Процентиль: 77%
0.0112
Низкий

5.8 Medium

CVSS2

6.5 Medium

CVSS3

Уязвимость CVE-2022-34903