Lucene search

K
osvGoogleOSV:DSA-2967-1
HistoryJun 25, 2014 - 12:00 a.m.

gnupg - security update

2014-06-2500:00:00
Google
osv.dev
15

EPSS

0.013

Percentile

86.0%

Jean-RenĂŠ Reinhard, Olivier Levillain and Florian Maury reported that
GnuPG, the GNU Privacy Guard, did not properly parse certain garbled
compressed data packets. A remote attacker could use this flaw to mount
a denial of service against GnuPG by triggering an infinite loop.

For the stable distribution (wheezy), this problem has been fixed in
version 1.4.12-7+deb7u4.

For the unstable distribution (sid), this problem has been fixed in
version 1.4.16-1.2.

We recommend that you upgrade your gnupg packages.