Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Klaus Eisentraut

Researcher fromSySS GmbH
#32723of 53,635
7.8Total CVSS
Vulnerabilities · 1
PT-2016-5809
7.8
2016-04-29
None · Pgpdump · CVE-2016-4021
**Name of the Vulnerable Software and Affected Versions** pgpdump versions prior to 0.30 **Description** The issue allows context-dependent attackers to cause a denial of service, resulting in an infinite loop and CPU consumption, via crafted input. This is demonstrated by the string `xa3x03`. **Recommendations** For versions prior to 0.30, update to version 0.30 or later to resolve the issue. As a temporary workaround, consider restricting the input to the `read binary` function to prevent crafted input from causing a denial of service.