CVE-2026-24881: Buffer Overflow
In GnuPG before 2.5.17, a crafted CMS (S/MIME) EnvelopedData message carrying an oversized wrapped session key can cause a stack-based buffer overflow in gpg-agent during PKDECRYPT--kem=CMS handling. This can easily be leveraged for denial of service; however, there is also memory corruption that could lead to remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-24881?
CVE-2026-24881 is a critical vulnerability that can lead to a denial of service and memory corruption due to a stack-based buffer overflow.
How do I fix CVE-2026-24881?
To fix CVE-2026-24881, update your GnuPG installation to version 2.5.17 or later.
What software is affected by CVE-2026-24881?
GnuPG versions before 2.5.17 are affected by CVE-2026-24881.
What type of attack does CVE-2026-24881 facilitate?
CVE-2026-24881 facilitates denial of service attacks through crafted CMS EnvelopedData messages.
Is there a risk of data loss with CVE-2026-24881?
Yes, CVE-2026-24881 could potentially lead to memory corruption, which may result in data loss.