Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-57062

Опубликовано: 23 июн. 2026
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 2.9

Описание

CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182.

РелизСтатусПримечание
devel

pending

2.4.9-4ubuntu3
esm-infra-legacy/xenial

not-affected

code not present
esm-infra/bionic

not-affected

code not present
esm-infra/focal

not-affected

code not present
jammy

not-affected

code not present
noble

released

2.4.4-2ubuntu17.6
questing

ignored

end of life, was needs-triage
resolute

released

2.4.8-4ubuntu3.1
upstream

released

2.4.9-5

Показывать по

EPSS

Процентиль: 4%
0.00142
Низкий

2.9 Low

CVSS3

Связанные уязвимости

CVSS3: 2.9
redhat
3 месяца назад

CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182.

CVSS3: 2.9
nvd
3 месяца назад

CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182.

CVSS3: 2.9
msrc
3 месяца назад

CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182.

CVSS3: 2.9
debian
3 месяца назад

CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2 ...

suse-cvrf
2 месяца назад

Security update for gpg2

EPSS

Процентиль: 4%
0.00142
Низкий

2.9 Low

CVSS3