The read_binary function in buffer.c in pgpdump before 0.30 allows context-dependent attackers to cause a denial of service (infinite loop and CPU consumption) via crafted input, as demonstrated by the \xa3\x03 string.
References
Information
Published : 2016-05-26 07:59
Updated : 2016-06-15 11:45
NVD link : CVE-2016-4021
Mitre link : CVE-2016-4021
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
pgpdump_project
- pgpdump
fedoraproject
- fedora