Vulnerability Bulletins

DSA-2968 gnupg2 - security update

   
Affected software Debian
 
Jean-René Reinhard, Olivier Levillain and Florian Maury reported thatGnuPG, the GNU Privacy Guard, did not properly parse certain garbledcompressed data packets. A remote attacker could use this flaw to mounta denial of service against GnuPG by triggering an infinite loop.

More info:

https://www.debian.org/security/2014/dsa-2968