GPG libgcrypt Heap Buffer Overflow
Posted by deepcore on February 2, 2021 – 9:41 am
There is a heap buffer overflow in libgcrypt due to an incorrect assumption in the block buffer management code. Just decrypting some data can overflow a heap buffer with attacker controlled data and no verification or signature is validated before the vulnerability occurs.
Post a reply
You must be logged in to post a comment.