This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
Detail | |||
---|---|---|---|
Vendor | Gpgme Project | First view | 2020-02-12 |
Product | Gpgme | Last view | 2020-02-12 |
Version | * | Type | Application |
Update | * | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | go | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:a:gpgme_project:gpgme |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
7.5 | 2020-02-12 | CVE-2020-8945 | The proglottis Go wrapper before 0.1.1 for the GPGME library has a use-after-free, as demonstrated by use for container image pulls by Docker or CRI-O. This leads to a crash or potential code execution during GPG signature verification. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
100% (1) | CWE-416 | Use After Free |