CVE-2026-24883

Publication date

2026-01-27 18:43:18

Family

mitre

State

PUBLISHED

Description

In GnuPG before 2.5.17, a long signature packet length causes parse_signature to return success with sig->data[] set to a NULL value, leading to a denial of service (application crash).