Home

Description

In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input.

PUBLISHED Reserved 2025-12-28 | Published 2025-12-28 | Updated 2025-12-28 | Assigner mitre




HIGH: 7.8CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N

Problem types

CWE-675 Multiple Operations on Resource in Single-Operation Context

Product status

Default status
unknown

Any version
affected

References

gpg.fail/memcpy

news.ycombinator.com/item?id=46403200

www.openwall.com/lists/oss-security/2025/12/28/5

github.com/...ommit/115d138ba599328005c5321c0ef9f00355838ca9

github.com/...3418695f5d2cc9e6cf8c9418e09378ebe4/g10/armor.c

cve.org (CVE-2025-68973)

nvd.nist.gov (CVE-2025-68973)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.