yocto ▾
›
scarthgap ▾
›
component
›
libgcrypt
Component Overview
Vulnerability Overview
Name
libgcrypt
Version
1.10.3
Type
library
Description
General purpose cryptographic library based on the code from GnuPG
Licenses
GPL-2.0-or-later & LGPL-2.1-or-later
PURL
-
CPE
cpe:2.3:*:gnupg:libgcrypt:1.10.3:*:*:*:*:*:*:*
Other Versions
#
Project
Branch
Version
yocto
kirkstone
1.9.4
yocto
master
1.12.2
Vulnerabilities
#
Name
Analysis
Description
CVE-2026-41989
Exploitable
Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.