Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-30258

Опубликовано: 19 мар. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 2.7

Описание

In GnuPG before 2.5.5, if a user chooses to import a certificate with certain crafted subkey data that lacks a valid backsig or that has incorrect usage flags, the user loses the ability to verify signatures made from certain other signing keys, aka a "verification DoS."

РелизСтатусПримечание
devel

released

2.4.4-2ubuntu23
esm-infra/bionic

needs-triage

esm-infra/focal

not-affected

2.2.19-3ubuntu2.4
esm-infra/xenial

needs-triage

focal

released

2.2.19-3ubuntu2.4
jammy

released

2.2.27-3ubuntu2.3
noble

released

2.4.4-2ubuntu17.2
oracular

released

2.4.4-2ubuntu18.2
plucky

released

2.4.4-2ubuntu23
upstream

released

2.5.5

Показывать по

EPSS

Процентиль: 3%
0.00018
Низкий

2.7 Low

CVSS3

Связанные уязвимости

CVSS3: 2.7
redhat
6 месяцев назад

In GnuPG before 2.5.5, if a user chooses to import a certificate with certain crafted subkey data that lacks a valid backsig or that has incorrect usage flags, the user loses the ability to verify signatures made from certain other signing keys, aka a "verification DoS."

CVSS3: 2.7
nvd
6 месяцев назад

In GnuPG before 2.5.5, if a user chooses to import a certificate with certain crafted subkey data that lacks a valid backsig or that has incorrect usage flags, the user loses the ability to verify signatures made from certain other signing keys, aka a "verification DoS."

CVSS3: 2.7
debian
6 месяцев назад

In GnuPG before 2.5.5, if a user chooses to import a certificate with ...

suse-cvrf
2 месяца назад

Recommended update for gpg2

CVSS3: 2.7
github
6 месяцев назад

In GnuPG before 2.5.5, if a user chooses to import a certificate with certain crafted subkey data that lacks a valid backsig or that has incorrect usage flags, the user loses the ability to verify signatures made from certain other signing keys, aka a "verification DoS."

EPSS

Процентиль: 3%
0.00018
Низкий

2.7 Low

CVSS3