| modules: |
| - module: github.com/proglottis/gpgme |
| versions: |
| - fixed: 0.1.1 |
| packages: |
| - package: github.com/proglottis/gpgme |
| description: | |
| Due to improper setting of finalizers, memory passed to C may be freed before it is used, |
| leading to crashes due to memory corruption or possible code execution. |
| published: 2021-04-14T20:04:52Z |
| cves: |
| - CVE-2020-8945 |
| ghsas: |
| - GHSA-m6wg-2mwg-4rfq |
| links: |
| commit: https://github.com/proglottis/gpgme/commit/92153bcb59bd2f511e502262c46c7bd660e21733 |
| context: |
| - https://bugzilla.redhat.com/show_bug.cgi?id=1795838 |