Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-41990

Опубликовано: 23 апр. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4

Описание

Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data.

РелизСтатусПримечание
devel

pending

1.12.2-1
esm-infra-legacy/xenial

not-affected

code not present
esm-infra/bionic

not-affected

code not present
esm-infra/focal

not-affected

code not present
esm-infra/xenial

not-affected

code not present
fips-preview/jammy

not-affected

code not present
fips-updates/bionic

not-affected

code not present
fips-updates/focal

not-affected

code not present
fips-updates/jammy

not-affected

code not present
fips-updates/noble

not-affected

code not present

Показывать по

EPSS

Процентиль: 7%
0.00176
Низкий

4 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
4 месяца назад

Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data.

CVSS3: 4
nvd
4 месяца назад

Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data.

CVSS3: 4
debian
4 месяца назад

Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a stat ...

suse-cvrf
около 2 месяцев назад

Security update for libgcrypt

CVSS3: 4
github
4 месяца назад

Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data.

EPSS

Процентиль: 7%
0.00176
Низкий

4 Medium

CVSS3