CVE-2006-3082

Source
https://cve.org/CVERecord?id=CVE-2006-3082
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2006-3082.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2006-3082
Downstream
Withdrawn
2026-01-27T04:06:36Z
Published
2006-06-19T18:02:00Z
Modified
2026-01-27T04:06:36Z
Summary
[none]
Details

parse-packet.c in GnuPG (gpg) 1.4.3 and 1.9.20, and earlier versions, allows remote attackers to cause a denial of service (gpg crash) and possibly overwrite memory via a message packet with a large length (long user ID string), which could lead to an integer overflow, as demonstrated using the --no-armor option.

References

Affected packages