https://seclists.org/oss-sec/2026/q2/190: Libgcrypt security leases 1.12.2, 1.11.3, 1.10.x
Published Apr 21, 2026
·Updated
Affected Software
1 affected component
gnupg Libgcrypt<1.12.2, <1.11.3, <1.10.4
Frequently Asked Questions
1
What is the severity of CVE-2026-XXXX related to Libgcrypt?
The severity of CVE-2026-XXXX is considered high due to potential remote code execution risks.
2
How do I fix CVE-2026-XXXX in Libgcrypt?
To fix CVE-2026-XXXX, update Libgcrypt to version 1.12.2, 1.11.3, or the latest version available.
3
What vulnerabilities does CVE-2026-XXXX address in Libgcrypt?
CVE-2026-XXXX addresses multiple vulnerabilities including buffer overflow and improper input validation.
4
Is CVE-2026-XXXX relevant to all versions of Libgcrypt?
CVE-2026-XXXX is relevant to multiple older versions of Libgcrypt, specifically versions prior to the latest security releases.
5
How can I determine if I'm using a vulnerable version of Libgcrypt affected by CVE-2026-XXXX?
You can determine if you are using a vulnerable version of Libgcrypt by checking your installed version against the fixed versions mentioned in the vulnerability announcement.