โ† All reports

The Libgcrypt library has vulnerabilities that could allow for denial of service or improper handling of cryptographic operations if not updated.

CybersecurityTechnologyConflictOpen Source SecurityApr 23, 2026score 0.172 posts ยท 0 replies across 1 instances
The thread discusses two vulnerabilities in the Libgcrypt library used by GnuPG, both related to security issues that could lead to denial of service or improper handling of cryptographic operations. These vulnerabilities highlight potential risks in cryptographic software and the importance of timely updates.

Claims

The Libgcrypt library has vulnerabilities that could allow for denial of service or improper handling of cryptographic operations if not updated.
Parent: CybersecurityEntity: LibgcryptImpact: negativeDate: Apr 23, 2026Target: The security of cryptographic software

Source posts

@[email protected]
๐Ÿšจ EUVD-2026-25193 ๐Ÿ“Š Score: 4.0/10 (CVSS v3.1) ๐Ÿ“ฆ Product: Libgcrypt ๐Ÿข Vendor: GnuPG ๐Ÿ“… Updated: 2026-04-23 ๐Ÿ“ Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data. ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25193 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25192 ๐Ÿ“Š Score: 6.7/10 (CVSS v3.1) ๐Ÿ“ฆ Product: Libgcrypt, Libgcrypt, Libgcrypt ๐Ÿข Vendor: GnuPG ๐Ÿ“… Updated: 2026-04-23 ๐Ÿ“ Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt. ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25192 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability