Vulnerabilities > PGP > Desktop > 9.0

DATE CVE VULNERABILITY TITLE RISK
2009-04-15 CVE-2009-0681 Improper Input Validation vulnerability in PGP Desktop 8.0/9.0/9.0.6
PGP Desktop before 9.10 allows local users to (1) cause a denial of service (crash) via a crafted IOCTL request to pgpdisk.sys, and (2) cause a denial of service (crash) and execute arbitrary code via a crafted IRP in an IOCTL request to pgpwded.sys.
local
low complexity
pgp CWE-20
7.2
2005-12-10 CVE-2005-4151 Unspecified vulnerability in PGP Desktop 8.0/9.0
The Wipe Free Space utility in PGP Desktop Home 8.0 and Desktop Professional 9.0.3 Build 2932 and earlier does not clear file slack space in the last cluster for the file, which allows local users to access the previous contents of the disk.
local
low complexity
pgp
2.1