A040901-1Vendor advisory
http://www.atstake.com/research/advisories/2001/a040901-1.txt CVE-2001-0265
PGP 5.x/6.x/7.0 - ASCII Armor Parser Arbitrary File Creation
Record summary
CVE-2001-0265 has a selected CVSS score of 2.1; EIP currently links 1 catalogued exploit.
Description
ASCII Armor parser in Windows PGP 7.0.3 and earlier allows attackers to create files in arbitrary locations via a malformed ASCII armored file.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBPGP 5.x/6.x/7.0 - ASCII Armor Parser Arbitrary File CreationExploitDB exploitby Chris AnleyNot analyzed1 file
References
51782vdb entry
http://www.osvdb.org/1782 2556vdb entry
http://www.securityfocus.com/bid/2556 pgp-armor-code-execution(6643)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/6643 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0265