Back

CVE-2001-0522

Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privileges via format strings in the original filename that is stored in an encrypted file.

Published: Aug 14, 2001 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
gnu privacy_guard 7.1
gnu privacy_guard 7.2
gnu privacy_guard 8.0

GitHub Security Advisory GHSA-59h7-cqx3-mx33

Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 13.73%

Top 4% most likely to be exploited

Threat Score 34.1 / 100

Data Sources

NVD EPSS GitHub