File _patchinfo of Package patchinfo.42496
<patchinfo incident="42496"> <issue tracker="bnc" id="1257396">VUL-0: CVE-2026-24882: gpg2: stack-based buffer overflow in TPM2 PKDECRYPT for TPM-backed RSA and ECC keys</issue> <issue tracker="bnc" id="1256389">VUL-0: gpg2: gpg.fail/filename: GnuPG Accepts Path Separators and Path Traversals in Literal Data "Filename" Field</issue> <issue tracker="cve" id="2026-24882"/> <packager>ayankov</packager> <rating>important</rating> <category>security</category> <summary>Security update for gpg2</summary> <description>This update for gpg2 fixes the following issues: Security fixes: - CVE-2026-24882: Fixed stack-based buffer overflow in TPM2 PKDECRYPT for TPM-backed RSA and ECC keys (bsc#1257396) - Fixed GnuPG accepting Path Separators and Path Traversals in Literal Data "Filename" Field (bsc#1256389) </description> </patchinfo>