Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Dkg

#50345of 53,625
4.7Total CVSS
Vulnerabilities · 1
PT-2025-11973
4.7
2025-02-10
Gnupg · Gnupg · CVE-2025-30258
**Name of the Vulnerable Software and Affected Versions** GnuPG versions prior to 2.5.5 **Description** The issue arises when a user imports a certificate with crafted subkey data lacking a valid backsig or having incorrect usage flags, leading to a loss of ability to verify signatures made from certain other signing keys. This can be considered a "verification DoS." **Recommendations** For GnuPG versions prior to 2.5.5, update to version 2.5.5 or later to resolve the issue.