Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Klaus Eisentraut

Pesquisador deSySS GmbH
#32723de 53,638
7.8CVSS total
Vulnerabilidades · 1
PT-2016-5809
7.8
2016-04-29
None · Pgpdump · CVE-2016-4021
**Name of the Vulnerable Software and Affected Versions** pgpdump versions prior to 0.30 **Description** The issue allows context-dependent attackers to cause a denial of service, resulting in an infinite loop and CPU consumption, via crafted input. This is demonstrated by the string `xa3x03`. **Recommendations** For versions prior to 0.30, update to version 0.30 or later to resolve the issue. As a temporary workaround, consider restricting the input to the `read binary` function to prevent crafted input from causing a denial of service.