Vulnerabilities > CVE-2009-3805 - Remote Denial of Service vulnerability in Gpg4Win 2.0.1

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
kde-apps
gpg4win
exploit available

Summary

gpg2.exe in Gpg4win 2.0.1, as used in KDE Kleopatra 2.0.11, allows remote attackers to cause a denial of service (application crash) via a long certificate signature.

Vulnerable Configurations

Part Description Count
Application
Kde-Apps
1
Application
Gpg4Win
1

Exploit-Db

descriptionGPG2/Kleopatra 2.0.11 malformed certificate PoC. CVE-2009-3805. Local exploit for windows platform
idEDB-ID:9884
last seen2016-02-01
modified2009-10-21
published2009-10-21
reporterDr_IDE
sourcehttps://www.exploit-db.com/download/9884/
titleGPG2/Kleopatra 2.0.11 malformed certificate PoC