CVE-2026-24881
Published:
1/27/2026
Last updated:
1/27/2026
Reserved:
1/27/2026
In GnuPG before 2.5.17, a crafted CMS (S/MIME) EnvelopedData message carrying an oversized wrapped session key can cause a stack-based buffer overflow in gpg-agent during PKDECRYPT--kem=CMS handling. This can easily be leveraged for denial of service; however, there is also memory corruption that could lead to remote code execution.
CNA assigner:
mitre (8254265b-2729-46b6-b9e3-3dfca2d5bfca)
Requested by:
n/a
Products affected (1)
| Product |
Vendor |
Version |
| GnuPG |
GnuPG
|
CLI 2.0.1
|