The libksba library 0.9.12 and possibly other versions, as used...
Vulnerability Description
The libksba library 0.9.12 and possibly other versions, as used by gpgsm in the newpg package on SUSE LINUX, allows attackers to cause a denial of service (application crash) via a malformed X.509 certificate in a signature.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-5111
Credits & Attribution
No credits recorded in the NVD database.
References
- http://secunia.com/advisories/22473
- http://www.novell.com/linux/security/advisories/2006_23_sr.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29621
- http://secunia.com/advisories/22423
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:183
- http://www.novell.com/linux/download/updates/101_x86_64.html
- http://www.ubuntu.com/usn/usn-365-1
- http://www.securityfocus.com/bid/20565
- http://secunia.com/advisories/22445
Affected Vendor
libksba library
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.