CVE-2025-68972 - GnuPG Invalid Armor Injection Vulnerability

CVE-2025-68972 - GnuPG Invalid Armor Injection Vulnerability

CVE ID : CVE-2025-68972 Published : Dec. 27, 2025, 10:52 p.m. | 29 minutes ago Description : In GnuPG through 2.4.8, if a signed message has \f at the end of a plaintext line, an adversary can construct a modified message that places additional text after the signed material, such that signature verification of the modified message succeeds (although an

CVE Details

Published
Dec. 27, 2025

Source: Telegram CVE Monitor