Back to bug 2127010

Who When What Removed Added
Sandipan Roy 2022-09-15 05:01:34 UTC Summary gnupg: denial of service issue (resource consumption) using compressed packets CVE-2022-3219 gnupg: denial of service issue (resource consumption) using compressed packets
Alias CVE-2022-3219
Sandipan Roy 2022-09-15 05:02:10 UTC CC bcl, crypto-team, rdieter, tm
Sandipan Roy 2022-09-15 05:02:53 UTC Blocks 2112120
Sandipan Roy 2022-09-15 05:06:08 UTC Priority medium low
Severity medium low
Sandipan Roy 2022-09-15 05:22:07 UTC Depends On 2127016, 2127012, 2127013, 2127014, 2127015
Kazu Yoshida 2022-09-23 04:57:30 UTC CC kyoshida
Sandipan Roy 2023-02-23 06:39:46 UTC Doc Text A vulnerability was found in GnuPG. GnuPG can be made to spin on a relatively small input by (for example) crafting a public key with thousands of signatures attached, compressed down to just a few KB.
RaTasha Tillery-Smith 2023-02-23 12:34:41 UTC Doc Text A vulnerability was found in GnuPG. GnuPG can be made to spin on a relatively small input by (for example) crafting a public key with thousands of signatures attached, compressed down to just a few KB. A vulnerability was found in GnuPG. GnuPG can spin on a relatively small input by crafting a public key with thousands of signatures attached and compressed down to a few kilobytes. This issue can potentially cause a denial of service.
Red Hat Bugzilla 2023-07-07 08:32:07 UTC Assignee security-response-team nobody

Back to bug 2127010