ΠΠΎΠ»ΠΈΡΠ΅ΡΡΠ²ΠΎ 17
ΠΠΎΠ»ΠΈΡΠ΅ΡΡΠ²ΠΎ 17
GHSA-678p-6r6j-65f9
mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes.
CVE-2018-12020
mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes.
CVE-2018-12020
mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes.
CVE-2018-12020
mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes.
CVE-2018-12020
mainproc.c in GnuPG before 2.2.8 mishandles the original filename duri ...
openSUSE-SU-2018:1724-1
Security update for gpg2
openSUSE-SU-2018:1722-1
Security update for python-python-gnupg
SUSE-SU-2018:1814-1
Security update for gpg2
SUSE-SU-2018:1698-2
Security update for gpg2
SUSE-SU-2018:1698-1
Security update for gpg2
SUSE-SU-2018:1696-1
Security update for gpg2
ELSA-2018-2181
ELSA-2018-2181: gnupg2 security update (IMPORTANT)
ELSA-2018-2180
ELSA-2018-2180: gnupg2 security update (IMPORTANT)
BDU:2019-00237
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΡ ΠΏΡΠΎΡΠ΅ΡΡΠ° mainproc.c ΠΏΡΠΎΠ³ΡΠ°ΠΌΠΌΡ ΡΠΈΡΡΠΎΠ²Π°Π½ΠΈΡ ΠΈΠ½ΡΠΎΡΠΌΠ°ΡΠΈΠΈ ΠΈ ΡΠΎΠ·Π΄Π°Π½ΠΈΡ ΡΠ»Π΅ΠΊΡΡΠΎΠ½Π½ΡΡ ΡΠΈΡΡΠΎΠ²ΡΡ ΠΏΠΎΠ΄ΠΏΠΈΡΠ΅ΠΉ GNU Privacy Guard, ΠΏΠΎΠ·Π²ΠΎΠ»ΡΡΡΠ°Ρ Π½Π°ΡΡΡΠΈΡΠ΅Π»Ρ ΠΎΠΊΠ°Π·Π°ΡΡ Π²ΠΎΠ·Π΄Π΅ΠΉΡΡΠ²ΠΈΠ΅ Π½Π° ΡΠ΅Π»ΠΎΡΡΠ½ΠΎΡΡΡ Π·Π°ΡΠΈΡΠ°Π΅ΠΌΠΎΠΉ ΠΈΠ½ΡΠΎΡΠΌΠ°ΡΠΈΠΈ
openSUSE-SU-2018:1708-1
Security update for enigmail
openSUSE-SU-2018:1706-1
Security update for enigmail
SUSE-SU-2018:2243-1
Security update for enigmail
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΠ΅ΠΉ Π½Π° ΡΡΡΠ°Π½ΠΈΡΡ
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΡ | CVSS | EPSS | ΠΠΏΡΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ | |
|---|---|---|---|---|
GHSA-678p-6r6j-65f9 mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes. | CVSS3: 7.5 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 4 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |
CVE-2018-12020 mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes. | CVSS3: 7.5 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |
CVE-2018-12020 mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes. | CVSS3: 7.5 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |
CVE-2018-12020 mainproc.c in GnuPG before 2.2.8 mishandles the original filename during decryption and verification actions, which allows remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option. For example, the OpenPGP data might represent an original filename that contains line feed characters in conjunction with GOODSIG or VALIDSIG status codes. | CVSS3: 7.5 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |
CVE-2018-12020 mainproc.c in GnuPG before 2.2.8 mishandles the original filename duri ... | CVSS3: 7.5 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |
openSUSE-SU-2018:1724-1 Security update for gpg2 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
openSUSE-SU-2018:1722-1 Security update for python-python-gnupg | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
SUSE-SU-2018:1814-1 Security update for gpg2 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
SUSE-SU-2018:1698-2 Security update for gpg2 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΏΠΎΡΡΠΈ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
SUSE-SU-2018:1698-1 Security update for gpg2 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
SUSE-SU-2018:1696-1 Security update for gpg2 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
ELSA-2018-2181 ELSA-2018-2181: gnupg2 security update (IMPORTANT) | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
ELSA-2018-2180 ELSA-2018-2180: gnupg2 security update (IMPORTANT) | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | ||
BDU:2019-00237 Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΡ ΠΏΡΠΎΡΠ΅ΡΡΠ° mainproc.c ΠΏΡΠΎΠ³ΡΠ°ΠΌΠΌΡ ΡΠΈΡΡΠΎΠ²Π°Π½ΠΈΡ ΠΈΠ½ΡΠΎΡΠΌΠ°ΡΠΈΠΈ ΠΈ ΡΠΎΠ·Π΄Π°Π½ΠΈΡ ΡΠ»Π΅ΠΊΡΡΠΎΠ½Π½ΡΡ ΡΠΈΡΡΠΎΠ²ΡΡ ΠΏΠΎΠ΄ΠΏΠΈΡΠ΅ΠΉ GNU Privacy Guard, ΠΏΠΎΠ·Π²ΠΎΠ»ΡΡΡΠ°Ρ Π½Π°ΡΡΡΠΈΡΠ΅Π»Ρ ΠΎΠΊΠ°Π·Π°ΡΡ Π²ΠΎΠ·Π΄Π΅ΠΉΡΡΠ²ΠΈΠ΅ Π½Π° ΡΠ΅Π»ΠΎΡΡΠ½ΠΎΡΡΡ Π·Π°ΡΠΈΡΠ°Π΅ΠΌΠΎΠΉ ΠΈΠ½ΡΠΎΡΠΌΠ°ΡΠΈΠΈ | CVSS3: 7.5 | 9% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |
openSUSE-SU-2018:1708-1 Security update for enigmail | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |||
openSUSE-SU-2018:1706-1 Security update for enigmail | ΠΎΠΊΠΎΠ»ΠΎ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |||
SUSE-SU-2018:2243-1 Security update for enigmail | ΠΏΠΎΡΡΠΈ 8 Π»Π΅Ρ Π½Π°Π·Π°Π΄ |
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΠ΅ΠΉ Π½Π° ΡΡΡΠ°Π½ΠΈΡΡ