--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2016-5733ad20f5
2016-05-10 11:45:44.977591
--------------------------------------------------------------------------------

Name        : pgpdump
Product     : Fedora 23
Version     : 0.30
Release     : 1.fc23
URL         : http://www.mew.org/~kazu/proj/pgpdump/
Summary     : PGP packet visualizer
Description :
pgpdump is a PGP packet visualizer which displays the packet format of
OpenPGP (RFC 4880) and PGP version 2 (RFC 1991).

--------------------------------------------------------------------------------
Update Information:

CVE-2016-4021 pgpdump: endless loop parsing specially crafted input
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1328351 - CVE-2016-4021 pgpdump: endless loop parsing specially crafted input
        https://bugzilla.redhat.com/show_bug.cgi?id=1328351
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program. Use
su -c 'yum update pgpdump' at the command line.
For more information, refer to "Managing Software with yum",
available at .

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/

Fedora 23: pgpdump Security Update

May 10, 2016
CVE-2016-4021 pgpdump: endless loop parsing specially crafted input

Summary

pgpdump is a PGP packet visualizer which displays the packet format of

OpenPGP (RFC 4880) and PGP version 2 (RFC 1991).

Update Information:

CVE-2016-4021 pgpdump: endless loop parsing specially crafted input

Change Log

References

[ 1 ] Bug #1328351 - CVE-2016-4021 pgpdump: endless loop parsing specially crafted input https://bugzilla.redhat.com/show_bug.cgi?id=1328351

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update pgpdump' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
Name : pgpdump
Product : Fedora 23
Version : 0.30
Release : 1.fc23
URL : http://www.mew.org/~kazu/proj/pgpdump/
Summary : PGP packet visualizer

Related News