Vulnerabilities > CVE-2022-3219 - Out-of-bounds Write vulnerability in Gnupg

047910
CVSS 3.3 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
LOW
local
low complexity
gnupg
CWE-787

Summary

GnuPG can be made to spin on a relatively small input by (for example) crafting a public key with thousands of signatures attached, compressed down to just a few KB.

Vulnerable Configurations

Part Description Count
Application
Gnupg
1

Common Weakness Enumeration (CWE)