gpp_maybe
Security update for gpg2
SUSE-SL-Micro-6.2-221
This update for gpg2 fixes the following issues: - CVE-2026-24882: stack-based buffer overflow in TPM2 PKDECRYPT for TPM-backed RSA and ECC keys (bsc#1257396). - CVE-2026-24883: denial of service due to long signature packet length causing parse_signature to return success with sig->data[] set to a NULL value (bsc#1257395). - gpg.fail/filename: GnuPG Accepts Path Separators and Path Traversals in Literal Data "Filename" Field (bsc#1256389).
-
Release DateJan 29 2026
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Micro 6.2 s390x
-
Packagesgpg2
File encryption, decryption, signature creation and verification utility2.5.5-160000.4.1 lock rpm
SUSE Linux Micro 6.2 ppc64le
-
Packagesgpg2
File encryption, decryption, signature creation and verification utility2.5.5-160000.4.1 lock rpm
SUSE Linux Micro 6.2 aarch64
-
Packagesgpg2
File encryption, decryption, signature creation and verification utility2.5.5-160000.4.1 lock rpm
SUSE Linux Micro 6.2 x86_64
-
Packagesgpg2
File encryption, decryption, signature creation and verification utility2.5.5-160000.4.1 lock rpm