CVE-2008-1530

Publication date

2008-03-27 23:00:00

Family

mitre

State

PUBLISHED

Description

GnuPG (gpg) 1.4.8 and 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted duplicate keys that are imported from key servers, which triggers "memory corruption around deduplication of user IDs."