gpp_maybe Security update for gpg2
slessp4-gpg2-13655


This update for gpg2 fixes the following issues: - CVE-2018-12020: GnuPG mishandled the original filename during decryption and verification actions, which allowed remote attackers to spoof the output that GnuPG sends on file descriptor 2 to other programs that use the "--status-fd 2" option (bsc#1096745)

  • Release Date
    Jun 15 2018
  • References
    Bugzilla: 1096745
    CVEs: CVE-2018-12020
  • Type
    security
  • Severity
    important

cloud_download Downloads

SUSE Linux Enterprise Server 11.4 s390x
  • Packages
    gpg2
    GnuPG 2
    2.0.9-25.33.42.3.1 lock rpm lock src
    gpg2-lang
    Languages for package gpg2
    2.0.9-25.33.42.3.1 lock rpm
SUSE Linux Enterprise Server for SAP All-in-One 11.4 x86_64
  • Packages
    gpg2
    GnuPG 2
    2.0.9-25.33.42.3.1 lock rpm lock src
    gpg2-lang
    Languages for package gpg2
    2.0.9-25.33.42.3.1 lock rpm
SUSE Linux Enterprise Server for SAP Applications 11.4 ppc64
  • Packages
    gpg2
    GnuPG 2
    2.0.9-25.33.42.3.1 lock rpm lock src
    gpg2-lang
    Languages for package gpg2
    2.0.9-25.33.42.3.1 lock rpm
SUSE Linux Enterprise Server 11.4 i586
  • Packages
    gpg2
    GnuPG 2
    2.0.9-25.33.42.3.1 lock rpm lock src
    gpg2-lang
    Languages for package gpg2
    2.0.9-25.33.42.3.1 lock rpm
SUSE Linux Enterprise Server 11.4 ia64
  • Packages
    gpg2
    GnuPG 2
    2.0.9-25.33.42.3.1 lock rpm lock src
    gpg2-lang
    Languages for package gpg2
    2.0.9-25.33.42.3.1 lock rpm