Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-4021
Description:The read_binary function in buffer.c in pgpdump before 0.30 allows context-dependent attackers to cause a denial of service (infinite loop and CPU consumption) via crafted input, as demonstrated by the \xa3\x03 string.
Test IDs: 1.3.6.1.4.1.25623.1.0.808022   1.3.6.1.4.1.25623.1.0.131294   1.3.6.1.4.1.25623.1.0.808028   1.3.6.1.4.1.25623.1.1.1.2.2016.768   1.3.6.1.4.1.25623.1.0.807989  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-4021
Bugtraq: 20160418 CVE-2016-4021: pgpdump 0.29 - Endless loop parsing specially crafted input (SYSS-2016-030) (Google Search)
http://seclists.org/bugtraq/2016/Apr/99
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184689.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184617.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/183750.html
https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2016-030.txt




© 1998-2025 E-Soft Inc. All rights reserved.