Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer underflow in the ksba_oid_to_str function in Libksba before 1.3.2, as used in GnuPG, allows remote attackers to cause a denial of service (crash) via a crafted OID in a (1) S/MIME message or (2) ECC based OpenPGP data, which triggers a buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Libksba‘ksba_oid_to_str()’函数数字错误漏洞
Vulnerability Description
Libksba是GNU计划开发的GnuPG项目中的一个可简单化X.509证书、CMS数据和相关对象的工作任务的库。 GnuPG中使用的Libksba 1.3.1及之前版本中的‘ksba_oid_to_str’函数存在整数溢出漏洞。远程攻击者可借助S/MIME消息或ECC based OpenPGP数据中的OID利用该漏洞造成拒绝服务(崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A