gpp_maybe
Security update for gpg2
SUSE-SLE-Micro-5.4-2026-214
This update for gpg2 fixes the following issues: - CVE-2025-68973: Fix possible memory corruption in the armor parser (gpg.fail/memcpy)(bsc#1255715). - Avoid potential downgrade to SHA1 in 3rd party key signatures (gpg.fail/sha1) (bsc#1256246). - Error out on unverified output for non-detached signatures (gpg.fail/detached) (bsc#1256244). - Fix Cleartext Signature Forgery in the NotDashEscaped header implementation in GnuPG (gpg.fail/notdash) (bsc#1256390).
-
Release DateJan 22 2026
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Micro 5.4 s390x
-
Packagesgpg2
File encryption, decryption, signature creation and verification utility2.2.27-150300.3.16.1 lock rpm lock src
SUSE Linux Enterprise Micro 5.4 aarch64
-
Packagesgpg2
File encryption, decryption, signature creation and verification utility2.2.27-150300.3.16.1 lock rpm lock src
SUSE Linux Enterprise Micro 5.4 x86_64
-
Packagesgpg2
File encryption, decryption, signature creation and verification utility2.2.27-150300.3.16.1 lock rpm lock src