Vulnerabilities
Vulnerable Software
Gnupg:  >> Libgcrypt  >> 1.8.11  Security Vulnerabilities
Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.
CVSS Score
6.7
EPSS Score
0.0
Published
2026-04-23
The ElGamal implementation in Libgcrypt before 1.9.4 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.
CVSS Score
5.9
EPSS Score
0.001
Published
2021-09-06


Contact Us

Shodan ® - All rights reserved