Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2026-24882
CVE-2026-24882
In GnuPG before 2.5.17, a stack-based buffer overflow exists in tpm2daemon during handling of the PKDECRYPT command for TPM-backed RSA and ECC keys.
Published Jan 28, 2026
https://github.com/advisories/GHSA-mpc3-hqr8-w5f3
CVSS Score
High
7.8
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
rpm
gnupg2
2.0.14-4.el6
rpm
gnupg2
2.0.14-6.el6_4
rpm
gnupg2
2.0.14-8.el6
rpm
gnupg2
2.0.14-9.el6_10
rpm
gnupg2
2.0.22-3.el7
rpm
gnupg2
2.0.22-4.el7
rpm
gnupg2
2.0.22-5.el7_5
rpm
gnupg2
2.2.20-2.el8
rpm
gnupg2
2.2.20-3.el8_6
rpm
gnupg2
2.2.20-4.el8_10
rpm
gnupg2
2.2.9-1.el8
rpm
gnupg2
2.3.3-1.el9
rpm
gnupg2
2.3.3-2.el9_0
rpm
gnupg2
2.3.3-4.el9
rpm
gnupg2
2.3.3-5.el9_7
rpm
gnupg2
2.4.5-1.el10
rpm
gnupg2
2.4.5-2.el10
rpm
gnupg2
2.4.5-3.el10_1
rpm
gnupg2
2.4.5-4.el10_1
rpm
gnupg2-smime
2.0.14-4.el6
rpm
gnupg2-smime
2.0.14-6.el6_4
rpm
gnupg2-smime
2.0.14-8.el6
rpm
gnupg2-smime
2.0.14-9.el6_10
rpm
gnupg2-smime
2.0.22-3.el7
rpm
gnupg2-smime
2.0.22-4.el7
rpm
gnupg2-smime
2.0.22-5.el7_5
rpm
gnupg2-smime
2.2.20-2.el8
rpm
gnupg2-smime
2.2.20-3.el8_6
rpm
gnupg2-smime
2.2.20-4.el8_10
rpm
gnupg2-smime
2.2.9-1.el8
rpm
gnupg2-smime
2.3.3-1.el9
rpm
gnupg2-smime
2.3.3-2.el9_0
rpm
gnupg2-smime
2.3.3-4.el9
rpm
gnupg2-smime
2.3.3-5.el9_7
rpm
gnupg2-smime
2.4.5-1.el10
rpm
gnupg2-smime
2.4.5-2.el10
rpm
gnupg2-smime
2.4.5-3.el10_1
rpm
gnupg2-smime
2.4.5-4.el10_1
1-38 of 38
CVE-2026-24882 | Components Impacted | Sonatype Guide | Sonatype Guide