Vulnerabilities > Gpg4Win

DATE CVE VULNERABILITY TITLE RISK
2023-01-12 CVE-2022-3515 A vulnerability was found in the Libksba library due to an integer overflow within the CRL parser.
network
low complexity
gnupg gpg4win
critical
9.8
2020-09-03 CVE-2020-25125 Classic Buffer Overflow vulnerability in multiple products
GnuPG 2.2.21 and 2.2.22 (and Gpg4win 3.1.12) has an array overflow, leading to a crash or possibly unspecified other impact, when a victim imports an attacker's OpenPGP key, and this key has AEAD preferences.
local
low complexity
gnupg gpg4win CWE-120
7.8