CVE-2024-58261 Information

Description

The sequoia-openpgp crate 1.13.0 before 1.21.0 for Rust allows an infinite loop of \Reading a cert: Invalid operation: Not a Key packet\ messages for RawCertParser operations that encounter an unsupported primary key type.

Reference

https://crates.io/crates/sequoia-openpgp https://gitlab.com/sequoia-pgp/sequoia/-/issues/1106 https://rustsec.org/advisories/RUSTSEC-2024-0345.html

CNNVD-202507-3426 (Published: 2025-07-27)

Share on: