The Libgcrypt library has vulnerabilities that could allow for denial of service or improper handling of cryptographic operations if not updated.
Claims
The Libgcrypt library has vulnerabilities that could allow for denial of service or improper handling of cryptographic operations if not updated.
Parent: CybersecurityEntity: LibgcryptImpact: negativeDate: Apr 23, 2026Target: The security of cryptographic software
Source posts
๐จ EUVD-2026-25193
๐ Score: 4.0/10 (CVSS v3.1)
๐ฆ Product: Libgcrypt
๐ข Vendor: GnuPG
๐
Updated: 2026-04-23
๐ Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data.
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25193
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
๐จ EUVD-2026-25192
๐ Score: 6.7/10 (CVSS v3.1)
๐ฆ Product: Libgcrypt, Libgcrypt, Libgcrypt
๐ข Vendor: GnuPG
๐
Updated: 2026-04-23
๐ Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25192
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability