CVE-2024-53856

rPGP is a pure Rust implementation of OpenPGP. Prior to 0.14.1, rPGP allows an attacker to trigger rpgp crashes by providing crafted data. This vulnerability is fixed in 0.14.1.
Configurations

No configuration.

History

05 Dec 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-05 16:15

Updated : 2024-12-05 16:15


NVD link : CVE-2024-53856

Mitre link : CVE-2024-53856

CVE.ORG link : CVE-2024-53856


JSON object : View

Products Affected

No product.

CWE
CWE-130

Improper Handling of Length Parameter Inconsistency

CWE-148

Improper Neutralization of Input Leaders

CWE-617

Reachable Assertion