Описание
Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1.12.2-1ubuntu1 |
| esm-infra-legacy/xenial | needs-triage | |
| esm-infra/bionic | needs-triage | |
| esm-infra/focal | needs-triage | |
| esm-infra/xenial | ignored | end of ESM support, was needs-triage |
| fips-preview/jammy | needed | |
| fips-updates/bionic | needs-triage | |
| fips-updates/focal | needs-triage | |
| fips-updates/jammy | released | 1.9.4-3ubuntu3.2+Fips1 |
| fips-updates/noble | needs-triage |
Показывать по
10
EPSS
Процентиль: 8%
0.00182
Низкий
6.7 Medium
CVSS3
Связанные уязвимости
CVSS3: 7.5
redhat
3 месяца назад
Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.
CVSS3: 6.7
nvd
3 месяца назад
Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.
CVSS3: 6.7
debian
3 месяца назад
Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow ...
EPSS
Процентиль: 8%
0.00182
Низкий
6.7 Medium
CVSS3