Known vulnerabilities in libgcrypt (Alpine package)

Software CPE: cpe:2.3:o:alpine:libgcrypt_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 14
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting libgcrypt (Alpine package) libgcrypt (Alpine package) is affected by 14 known vulnerabilities: 1 high, 3 medium, 10 low Critical High Medium Low

Vulnerabilities (14)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU24721 - Cryptographic Issues
CVE-2019-13627
CWE-310 Low
No
No
1.8.3-r2 29.01.2020 SB2019092519
SB2020011468
SB2019092430
and 10 more
#VU21330 - Access of Uninitialized Pointer
CVE-2019-13527
CWE-824 High
No
No
1.8.3-r2 25.09.2019 SB2019080109
SB2019121201
SB2019121824
and 7 more
#VU33175 - Cryptographic Issues
CVE-2019-12904
CWE-310 Medium
No
No
1.8.3-r1 20.06.2019 SB2019062010
SB2019072324
SB2019072815
#VU13370 - Exposure of sensitive information to an unauthorized actor
CVE-2018-0495
CWE-200 Low
Available
No
1.7.10-r0 16.06.2018 SB2018061705
SB2018061412
SB2018061801
and 22 more
#VU32070 - Exposure of sensitive information to an unauthorized actor
CVE-2017-0379
CWE-200 Medium
No
No
1.7.9-r0 30.08.2017 SB2017083008
SB2017091920
SB2017091821
and 6 more
#VU33524 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2017-0378
CWE-79 Low
No
No
1.7.9-r0 20.07.2017 SB2017091919
#VU7299 - Cryptographic Issues
CVE-2017-9526
CWE-310 Low
No
No
1.7.7-r0, 1.7.8-r0 03.07.2017 SB2017060233
SB2017070401
SB2017061411
and 1 more
#VU7276 - Cryptographic Issues
CVE-2017-7526
CWE-310 Low
No
No
1.7.8-r0 30.06.2017 SB2017063015
SB2017063016
SB2017070304
and 8 more
#VU33061 - Exposure of sensitive information to an unauthorized actor
CVE-2017-5595
CWE-200 Low
No
No
1.6.6-r0 06.02.2017 SB2017022020
SB2017020932
SB2017020933
#VU33060 - Exposure of sensitive information to an unauthorized actor
CVE-2016-10140
CWE-200 Medium
No
No
1.6.6-r0 13.01.2017 SB2017022019
#VU327 - Use of Insufficiently Random Values
CVE-2016-6313
CWE-330 Low
No
No
1.6.6-r0 18.08.2016 SB2016081701
SB2016081702
SB2016081807
and 17 more
#VU32337 - Exposure of sensitive information to an unauthorized actor
CVE-2015-7511
CWE-200 Low
No
No
1.6.5-r0 20.04.2016 SB2016042002
SB2016021803
SB2016022312
and 2 more
#VU32505 - Exposure of sensitive information to an unauthorized actor
CVE-2014-5270
CWE-200 Low
No
No
1.5.4-r0 10.10.2014 SB2014101003
SB2014082102
SB2015080406
and 1 more
#VU32638 - Exposure of sensitive information to an unauthorized actor
CVE-2013-4242
CWE-200 Low
No
No
1.5.3-r0 20.08.2013 SB2013082001
SB2013080503
SB2013091903
and 3 more