CVE Database
/

CVE-2008-1530

Back to search

CVE-2008-1530

Published: Mar 27, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

GnuPG (gpg) 1.4.8 and 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted duplicate keys that are imported from key servers, which triggers "memory corruption around deduplication of user IDs."

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2008-1056
vdb-entry
x_refsource_VUPEN
[Announce] 20080326 GnuPG 1.4.9 released
mailing-list
x_refsource_MLIST
gnupg-keys-code-execution(41547)
vdb-entry
x_refsource_XF
28487
vdb-entry
x_refsource_BID
29568
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2008-1530 - Security Vulnerability | QwikSec