10
CVE-2006-6235
- EPSS 5.71%
- Veröffentlicht 07.12.2006 11:28:00
- Zuletzt bearbeitet 16.06.2026 22:32:43
- Erkennungen
A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute arbitrary code via crafted OpenPGP packets that cause GnuPG to dereference a function pointer from deallocated stack memory.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Gnu ≫ Privacy Guard Version 1.2.4
Gnu ≫ Privacy Guard Version 1.2.5
Gnu ≫ Privacy Guard Version 1.2.6
Gnu ≫ Privacy Guard Version 1.2.7
Gnu ≫ Privacy Guard Version 1.3.3
Gnu ≫ Privacy Guard Version 1.3.4
Gnu ≫ Privacy Guard Version 1.4
Gnu ≫ Privacy Guard Version 1.4.1
Gnu ≫ Privacy Guard Version 1.4.2
Gnu ≫ Privacy Guard Version 1.4.2.1
Gnu ≫ Privacy Guard Version 1.4.2.2
Gnu ≫ Privacy Guard Version 1.4.3
Gnu ≫ Privacy Guard Version 1.4.4
Gnu ≫ Privacy Guard Version 1.4.5
Gnu ≫ Privacy Guard Version 1.9.10
Gnu ≫ Privacy Guard Version 1.9.15
Gnu ≫ Privacy Guard Version 1.9.20
Gnu ≫ Privacy Guard Version 2.0
Gnu ≫ Privacy Guard Version 2.0.1
Redhat ≫ Enterprise Linux Version 4.0 Edition advanced_server
Redhat ≫ Enterprise Linux Version 4.0 Edition enterprise_server
Redhat ≫ Enterprise Linux Version 4.0 Edition workstation
Redhat ≫ Enterprise Linux Desktop Version 3.0
Redhat ≫ Enterprise Linux Desktop Version 4.0
Redhat ≫ Fedora Core Version core_5.0
Redhat ≫ Fedora Core Version core6
Redhat ≫ Linux Advanced Workstation Version 2.1 Edition itanium_processor
Slackware ≫ Slackware Linux Version 11.0
Ubuntu ≫ Ubuntu Linux Version 5.10
Ubuntu ≫ Ubuntu Linux Version 6.06
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.71% | 0.921 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
http://secunia.com/advisories/23335
http://www.novell.com/linux/security/advisories/2006_28_sr.html
ftp://patches.sgi.com/support/free/security/advisories/20061201-01-P.asc
http://secunia.com/advisories/23513
http://www.trustix.org/errata/2006/0070
http://lists.suse.com/archive/suse-security-announce/2006-Dec/0004.html
http://secunia.com/advisories/23250
http://secunia.com/advisories/23269
http://secunia.com/advisories/23284
http://secunia.com/advisories/23299
http://secunia.com/advisories/23303
http://secunia.com/advisories/24047
http://security.gentoo.org/glsa/glsa-200612-03.xml
http://support.avaya.com/elmodocs2/security/ASA-2007-047.htm
http://www.debian.org/security/2006/dsa-1231
http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.037.html
http://www.redhat.com/support/errata/RHSA-2006-0754.html
http://www.ubuntu.com/usn/usn-393-2
http://secunia.com/advisories/23329
http://lists.gnupg.org/pipermail/gnupg-announce/2006q4/000491.html
http://secunia.com/advisories/23245
http://secunia.com/advisories/23255
http://secunia.com/advisories/23259
http://secunia.com/advisories/23290
http://securitytracker.com/id?1017349
http://www.kb.cert.org/vuls/id/427009
http://www.mandriva.com/security/advisories?name=MDKSA-2006:228
http://www.securityfocus.com/archive/1/453664/100/0/threaded
http://www.securityfocus.com/archive/1/453723/100/0/threaded
http://www.securityfocus.com/bid/21462
http://www.ubuntu.com/usn/usn-393-1
http://www.vupen.com/english/advisories/2006/4881
https://exchange.xforce.ibmcloud.com/vulnerabilities/30711
https://issues.rpath.com/browse/RPL-835
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11245