First published: Mon Jun 18 2001(Updated: )
ASCII Armor parser in Windows PGP 7.0.3 and earlier allows attackers to create files in arbitrary locations via a malformed ASCII armored file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PGP OpenPGP | <=7.0.3 | |
PGP OpenPGP | =5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0265 is considered a high severity vulnerability due to its potential to allow attackers to create files in arbitrary locations.
To fix CVE-2001-0265, upgrade to a version of PGP that is later than 7.0.3.
CVE-2001-0265 affects PGP versions 7.0.3 and earlier, as well as version 5.
CVE-2001-0265 enables attackers to execute arbitrary file creation attacks via malformed ASCII armored files.
Yes, CVE-2001-0265 specifically affects the Windows version of PGP.