CVE-2022-34903
published 2022-07-01CVE-2022-34903: GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of…
PriorityP338medium6.5CVSS 3.1
AVNACHPRNUINSUCHILAN
EPSS
2.55%
83.3th percentile
GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | gnupg2 | < gnupg2 2.2.35-3 (bookworm) | gnupg2 2.2.35-3 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| gnupg | gnupg | <= 2.3.6 | — |
| msrc | cbl2_gnupg2_2.3.7-1_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_gnupg2_2.2.20-4_on_cbl_mariner_1.0 | — | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_msrc6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-356p-pg27-x2cf: GnuPG through 2
ghsa_unreviewed·2022-07-02
CVE-2022-34903 [MEDIUM] CWE-74 GHSA-356p-pg27-x2cf: GnuPG through 2
GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.
OSV
CVE-2022-34903: GnuPG through 2
osv·2022-07-01·CVSS 6.5
CVE-2022-34903 [MEDIUM] CVE-2022-34903: GnuPG through 2
GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.
CISA ICS
Siemens SCALANCE XCM-/XRM-300
cisa_ics·2024-02-15
Siemens SCALANCE XCM-/XRM-300
ICS Advisory
##
Siemens SCALANCE XCM-/XRM-300
Release DateFebruary 15, 2024
Alert CodeICSA-24-046-11
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SCALANCE XCM-/XRM-300
- Vulnerabilities: Out-of-bounds Write, Incorrect Type Conversion or Cast, Improper Verification of Cryptographic Signature, Improper Access Control, Improper Authentication, Missing Encryption
Ubuntu
GnuPG vulnerability
vendor_ubuntu·2022-07-12
CVE-2022-34903 GnuPG vulnerability
Title: GnuPG vulnerability
Summary: GnuPG could allow forged signatures.
USN-5503-1 fixed a vulnerability in GnuPG. This update provides
the corresponding update for Ubuntu 14.04 ESM and Ubuntu 16.04 ESM.
Original advisory details:
Demi Marie Obenour discovered that GnuPG incorrectly handled injection in
the status message. A remote attacker could possibly use this issue to
forge signatures.
Instructions: In general, a standard system update will make all the necessary changes.
Microsoft
GnuPG through 2.3.6 in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g. use of GPGME) are met allows signature forgery via
vendor_msrc·2022-07-12·CVSS 6.5
CVE-2022-34903 [MEDIUM] CWE-74 GnuPG through 2.3.6 in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g. use of GPGME) are met allows signature forgery via
GnuPG through 2.3.6 in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g. use of GPGME) are met allows signature forgery via injection into the status line.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is
Ubuntu
GnuPG vulnerability
vendor_ubuntu·2022-07-05
CVE-2022-34903 GnuPG vulnerability
Title: GnuPG vulnerability
Summary: GnuPG could allow forged signatures.
Demi Marie Obenour discovered that GnuPG incorrectly handled injection in
the status message. A remote attacker could possibly use this issue to
forge signatures.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
gpg: Signature spoofing via status line injection
vendor_redhat·2022-06-30·CVSS 6.5
CVE-2022-34903 [MEDIUM] CWE-347 gpg: Signature spoofing via status line injection
gpg: Signature spoofing via status line injection
GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.
A vulnerability was found in GnuPG. This issue occurs due to an escape detection loop at the write_status_text_and_buffer() function in g10/cpr.c. This flaw allows a malicious actor to bypass access control.
Package: gnupg2 (Red Hat Enterprise Linux 6) - Out of support scope
Package: gpgme (Red Hat Enterprise Linux 6) - Not affected
Package: gnupg2 (Red Hat Enterprise Linux 7) - Out of support scope
Package: gpgme (Red Hat Enterprise Linux 7) - Not affected
Package: gpgme (Red Hat Enterprise Linux 8) -
Debian
CVE-2022-34903: gnupg2 - GnuPG through 2.3.6, in unusual situations where an attacker possesses any secre...
vendor_debian·2022·CVSS 6.5
CVE-2022-34903 [MEDIUM] CVE-2022-34903: gnupg2 - GnuPG through 2.3.6, in unusual situations where an attacker possesses any secre...
GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line.
Scope: local
bookworm: resolved (fixed in 2.2.35-3)
bullseye: resolved (fixed in 2.2.27-2+deb11u2)
forky: resolved (fixed in 2.2.35-3)
sid: resolved (fixed in 2.2.35-3)
trixie: resolved (fixed in 2.2.35-3)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2022/07/02/1https://bugs.debian.org/1014157https://dev.gnupg.org/T6027https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRLWJQ76A4UKHI3Q36BKSJKS4LFLQO33/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NPTAR76EIZY7NQFENSOZO7U473257OVZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VN63GBTMRWO36Y7BKA2WQHROAKCXKCBL/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VU64FUVG2PRZBSHFOQRSP7KDVEIZ23OS/https://security.netapp.com/advisory/ntap-20220826-0005/https://www.debian.org/security/2022/dsa-5174https://www.openwall.com/lists/oss-security/2022/06/30/1http://www.openwall.com/lists/oss-security/2022/07/02/1https://bugs.debian.org/1014157https://dev.gnupg.org/T6027https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRLWJQ76A4UKHI3Q36BKSJKS4LFLQO33/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NPTAR76EIZY7NQFENSOZO7U473257OVZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VN63GBTMRWO36Y7BKA2WQHROAKCXKCBL/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VU64FUVG2PRZBSHFOQRSP7KDVEIZ23OS/https://security.netapp.com/advisory/ntap-20220826-0005/https://www.debian.org/security/2022/dsa-5174https://www.openwall.com/lists/oss-security/2022/06/30/1
2022-07-01
Published