Description

Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.

INFO

Published Date :

2026-04-23T04:30:26.124Z

Last Modified :

2026-04-23T16:22:47.896Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2026-41989 vulnerability.

Vendors Products
Gnupg
  • Libgcrypt

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact