CVE-2026-24883
—CVSS 3.1
5.5 medium
EPSS
<1%p38
Published
()
Modified
Description
In GnuPG before 2.5.17, a long signature packet length causes parse_signature to return success with sig->data[] set to a NULL value, leading to a denial of service (application crash).
In the news0 stories
No ingested article mentions this CVE yet.