A severe vulnerability has been discovered in Libgcrypt v1.9.0, a cryptographic library integrated into GNU Privacy Guard (GnuPG), reports Zeljka Zorz.
“Exploiting this bug is simple and thus immediate action for 1.9.0 users is required,” says Werner Koch, principal developer of GnuPG. Updating to version 1.9.1 (available here) will fix the flaw.
Read more at HelpNetSecurity.
Comments