CVE-2001-0522
Summary
| CVE | CVE-2001-0522 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2001-08-14 04:00:00 UTC |
| Updated | 2018-05-03 01:29:00 UTC |
| Description | Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privileges via format strings in the original filename that is stored in an encrypted file. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnu | Privacy Guard | 7.1 | All | All | All |
| Application | Gnu | Privacy Guard | 7.2 | All | All | All |
| Application | Gnu | Privacy Guard | 8.0 | All | All | All |
| Application | Gnu | Privacy Guard | 7.1 | All | All | All |
| Application | Gnu | Privacy Guard | 7.2 | All | All | All |
| Application | Gnu | Privacy Guard | 8.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IMNX-2001-70-023-01 | IMMUNIX | download.immunix.org | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CERT/CC Vulnerability Note VU#403051 | CERT-VN | www.kb.cert.org | US Government Resource |
| GnuPG Format String Vulnerability | BID | www.securityfocus.com | |
| redhat.com | Red Hat Support | REDHAT | www.redhat.com | |
| Debian GNU/Linux -- Security Information -- DSA-061-1 gnupg | DEBIAN | www.debian.org | |
| Home - Conectiva | CONECTIVA | distro.conectiva.com.br | |
| GnuPG - What's New | CONFIRM | www.gnupg.org | |
| SecurityFocus HOME Mailing List: BugTraq | BUGTRAQ | online.securityfocus.com | |
| MandrakeSoft Update Advisory MDKSA-2001:053 : gnupg | MANDRAKE | www.linux-mandrake.com | Patch, Vendor Advisory |
| [TL-Security-Announce] TLSA2001028 gnupg-1.0.6-1 | TURBO | www.turbolinux.com | |
| 404 Not Found | OSVDB | www.osvdb.org | |
| Xinuos Inc. | Support | Security | Advisories | Document Not Found | CALDERA | www.calderasystems.com | |
| 404 Page Not Found | SUSE | SUSE | www.novell.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.