Skip to main content

Vendor/product archive

gnupg / libgcrypt CVEs

Beta · best-effort

17 CVEs tagged to gnupg / libgcrypt0 Critical, 4 High, 10 Medium, 3 Low, 0 Unrated.

CVE-2026-41990

Published Apr 23, 2026

Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data.

CVSS 4.0 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-41989

Published Apr 23, 2026

Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.

CVSS 6.7 · Medium
evidence mentions
6
Buzz score
39.5
Vendor/product tagsBeta · best-effort

CVE-2021-40528

Published Sep 6, 2021

The ElGamal implementation in Libgcrypt before 1.9.4 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-12904

Published Jun 20, 2019

In Libgcrypt 1.8.4, the C implementation of AES is vulnerable to a flush-and-reload side-channel attack because physical addresses are available to other processes. (The C impleme…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-6829

Published Feb 7, 2018

cipher/elgamal.c in Libgcrypt through 1.8.2, when used to encrypt messages directly, improperly encodes plaintexts, which allows attackers to obtain sensitive information by readi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-0379

Published Aug 29, 2017

Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-9526

Published Jun 11, 2017

In Libgcrypt before 1.7.7, an attacker who learns the EdDSA session key (from side-channel observation during the signing process) can easily recover the long-term secret key. 1.7…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-5270

Published Oct 10, 2014

Libgcrypt before 1.5.4, as used in GnuPG and other products, does not properly perform ciphertext normalization and ciphertext randomization, which makes it easier for physically…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 1-17 of 17 CVEsPage 1 of 1