CVE-2006-6235

Source
https://cve.org/CVERecord?id=CVE-2006-6235
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2006-6235.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2006-6235
Downstream
Withdrawn
2026-01-27T04:07:35Z
Published
2006-12-07T11:28:00Z
Modified
2026-01-27T04:07:35Z
Summary
[none]
Details

A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute arbitrary code via crafted OpenPGP packets that cause GnuPG to dereference a function pointer from deallocated stack memory.

References

Affected packages