CVE-2013-4402
Publication date 7 October 2013
Last updated 24 July 2024
Ubuntu priority
The compressed packet parser in GnuPG 1.4.x before 1.4.15 and 2.0.x before 2.0.22 allows remote attackers to cause a denial of service (infinite recursion) via a crafted OpenPGP message.
Status
Package | Ubuntu Release | Status |
---|---|---|
gnupg | 13.04 raring |
Fixed 1.4.12-7ubuntu1.2
|
12.10 quantal |
Fixed 1.4.11-3ubuntu4.3
|
|
12.04 LTS precise |
Fixed 1.4.11-3ubuntu2.4
|
|
10.04 LTS lucid |
Fixed 1.4.10-2ubuntu1.4
|
|
gnupg2 | 13.04 raring |
Fixed 2.0.19-2ubuntu1.1
|
12.10 quantal |
Fixed 2.0.17-2ubuntu3.2
|
|
12.04 LTS precise |
Fixed 2.0.17-2ubuntu2.12.04.3
|
|
10.04 LTS lucid | Ignored end of life |
References
Related Ubuntu Security Notices (USN)
- USN-1987-1
- GnuPG vulnerabilities
- 9 October 2013