PGP Desktop Filename Buffer Overflow...

- AV AC AU C I A
发布: 2002-09-05
修订: 2025-04-13

It has been reported that PGP Corporate Desktop (and possibly other versions) are vulnerable to a stack overrun condition. The overflow occurs immediately after decryption of a malicious encrypted file. Exploitation may allow for attackers to execute code on recipient systems. Furthermore, the passphrase string in memory is not cleared when the overrun occurs. Shellcode could conceivably be written to obtain the passphrase and transmit it to the attacker.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息