Oval Definition:oval:org.mitre.oval:tst:32661
Comment:gnupg is earlier than 0:1.2.1-16
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:13847
State:oval:org.mitre.oval:ste:10214
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10089
V
parse-packet.c in GnuPG (gpg) 1.4.3 and 1.9.20, and earlier versions, allows remote attackers to cause a denial of service (gpg crash) and possibly overwrite memory via a message packet with a large length (long user ID string), which could lead to an integer overflow, as demonstrated using the --no-armor option.
2013-04-29
BACK