gnupg2: Improper sanitization of filenames allows for the display of fake status messages and the bypass of signature verification (CVE-2018-12020) SL6 x86_64 gnupg2-2.0.14-9.el6_10.x86_64.rpm gnupg2-debuginfo-2.0.14-9.el6_10.x86_64.rpm gnupg2-smime-2.0.14-9.el6_10.x86_64.rpm i386 gnupg2-2.0.14-9.el6_10.i686.rpm gnupg2-debuginfo-2.0.14-9.el6_10.i686.rpm gnupg2-smim [More...]. Synopsis: Important: gnupg2 security update Advisory ID: SLSA-2018:2180-1 Issue Date: 2018-07-12 CVE Numbers: CVE-2018-12020 -- Security Fix(es): * gnupg2: Improper sanitization of filenames allows for the display of fake status messages and the bypass of signature verification (CVE-2018-12020) -- SL6 x86_64 gnupg2-2.0.14-9.el6_10.x86_64.rpm gnupg2-debuginfo-2.0.14-9.el6_10.x86_64.rpm gnupg2-smime-2.0.14-9.el6_10.x86_64.rpm i386 gnupg2-2.0.14-9.el6_10.i686.rpm gnupg2-debuginfo-2.0.14-9.el6_10.i686.rpm gnupg2-smime-2.0.14-9.el6_10.i686.rpm - Scientific Linux Development Team . Crucial patch released for gnupg2 addressing filename validation vulnerabilities that enable circumvention of signature validation.. gnupg2 Important Update, Security Advisory, Signature Bypass, Scientific Linux. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.