CVE-2008-1530

GnuPG (gpg) 1.4.8 and 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted duplicate keys that are imported from key servers, which triggers "memory corruption around deduplication of user IDs."
Configurations

Configuration 1

cpe:2.3:a:gnupg:gnupg:1.4.8:*:*:*:*:*:*:*
cpe:2.3:a:gnupg:gnupg:2.0.8:*:*:*:*:*:*:*

Information

Published : 2008-03-27 11:44

Updated : 2017-08-08 01:30


NVD link : CVE-2008-1530

Mitre link : CVE-2008-1530

Products Affected
No products.
CWE