CVE-2013-4351
Status: ModifiedMedium (5.8)—
GnuPG 1.4.x, 2.0.x, and 2.1.x treats a key flags subpacket with all bits cleared (no usage permitted) as if it has all bits set (all usage permitted), which might allow remote attackers to bypass intended cryptographic protection mechanisms by leveraging the subkey.
CVSS
- Version: 2.0
- Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N
- Base score: 5.8
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 2.52%
- Percentile among all scored CVEs: 84
- Score date: 10/8/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- CWE-310
References
- http://lists.opensuse.org/opensuse-updates/2013-10/msg00003.html
- http://lists.opensuse.org/opensuse-updates/2013-10/msg00006.html
- http://rhn.redhat.com/errata/RHSA-2013-1459.html
- http://thread.gmane.org/gmane.comp.encryption.gpg.devel/17712/focus=18138
- http://ubuntu.com/usn/usn-1987-1
- http://www.debian.org/security/2013/dsa-2773
- http://www.debian.org/security/2013/dsa-2774
- http://www.openwall.com/lists/oss-security/2013/09/13/4
- https://bugzilla.redhat.com/show_bug.cgi?id=1010137
- http://lists.opensuse.org/opensuse-updates/2013-10/msg00003.html
- http://lists.opensuse.org/opensuse-updates/2013-10/msg00006.html
- http://rhn.redhat.com/errata/RHSA-2013-1459.html
- http://thread.gmane.org/gmane.comp.encryption.gpg.devel/17712/focus=18138
- http://ubuntu.com/usn/usn-1987-1
- http://www.debian.org/security/2013/dsa-2773
- http://www.debian.org/security/2013/dsa-2774
- http://www.openwall.com/lists/oss-security/2013/09/13/4
- https://bugzilla.redhat.com/show_bug.cgi?id=1010137
Raw JSON (NVD)
Show
{
"id": "CVE-2013-4351",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 5.8,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N",
"authentication": "NONE",
"integrityImpact": "PARTIAL",
"accessComplexity": "MEDIUM",
"availabilityImpact": "NONE",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 4.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "secalert@redhat.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2013-10-10T00:55:15.023",
"references": [
{
"url": "http://lists.opensuse.org/opensuse-updates/2013-10/msg00003.html",
"source": "secalert@redhat.com"
},
{
"url": "http://lists.opensuse.org/opensuse-updates/2013-10/msg00006.html",
"source": "secalert@redhat.com"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2013-1459.html",
"source": "secalert@redhat.com"
},
{
"url": "http://thread.gmane.org/gmane.comp.encryption.gpg.devel/17712/focus=18138",
"source": "secalert@redhat.com"
},
{
"url": "http://ubuntu.com/usn/usn-1987-1",
"source": "secalert@redhat.com"
},
{
"url": "http://www.debian.org/security/2013/dsa-2773",
"source": "secalert@redhat.com"
},
{
"url": "http://www.debian.org/security/2013/dsa-2774",
"source": "secalert@redhat.com"
},
{
"url": "http://www.openwall.com/lists/oss-security/2013/09/13/4",
"source": "secalert@redhat.com"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1010137",
"source": "secalert@redhat.com"
},
{
"url": "http://lists.opensuse.org/opensuse-updates/2013-10/msg00003.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://lists.opensuse.org/opensuse-updates/2013-10/msg00006.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2013-1459.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://thread.gmane.org/gmane.comp.encryption.gpg.devel/17712/focus=18138",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://ubuntu.com/usn/usn-1987-1",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.debian.org/security/2013/dsa-2773",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.debian.org/security/2013/dsa-2774",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.openwall.com/lists/oss-security/2013/09/13/4",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1010137",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-310"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "GnuPG 1.4.x, 2.0.x, and 2.1.x treats a key flags subpacket with all bits cleared (no usage permitted) as if it has all bits set (all usage permitted), which might allow remote attackers to bypass intended cryptographic protection mechanisms by leveraging the subkey."
},
{
"lang": "es",
"value": "GnuPG 1.4.x, y 2.1.x trata un subpaquete de flags clave con todos los bits a 0 (sin uso permitido) como si tuviera todos los bits establecidos (todo uso permitido) lo que permitiría a atacantes remotos evadir mecanismos de protección criptográfica intencionada mediante el aprovechamiento de la subclave."
}
],
"lastModified": "2026-06-16T23:57:04.563",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "28374619-966D-4F38-B83E-A6296F27CC05"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "22A28CDF-F2AF-4D49-9FB1-AED34A758289"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6399A22D-90DF-4CB5-9367-0C5242BD1A2B"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D63B0B4A-3998-4A4F-AD7A-BB8CEBE897B9"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FDA6934A-3D02-4749-A147-BE538C0AF27F"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8B238CA5-3B4D-4D6A-92CA-39A7CD57AF40"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DC6150E3-1D7C-44DA-BA57-35AB26F881B1"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.10:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3EB20A34-5E11-4D70-B3DE-66DD9863AE0D"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.11:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CA47467D-3D96-46DB-B0AC-D28586829710"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.12:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "68B68F2F-0718-4C87-9629-4657DC49EECC"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:1.4.13:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "69D492F9-2064-488A-BD16-99DD865D2BF6"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "47C64072-FC9C-4CA9-9752-3BC08839E319"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7C14D838-595F-4D1C-88B9-073937316923"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CBF8F2C7-574C-4768-ABAA-E3D9236299CC"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "113D566B-B596-4612-9D11-E238602A603E"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4CFC52C5-1148-4AC6-AAA2-8343E0C2029E"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E07E370B-4D2E-4EEC-A3EB-47AA9283278D"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6E3C52E7-454B-4FE9-9068-87ACB2925A5C"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "90B62D8E-3A37-4D7A-B674-06FFD80B86FB"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.10:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "59D27E52-B850-4BC0-B81A-A031BC50514B"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.11:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A0035132-40B2-4C7E-B6E3-F70117F3FC3B"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.12:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3B2D7B2D-CEBC-42BA-90E0-5C71BA39F5BC"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.13:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0626EEB2-39B3-4154-9F99-027057B33D1D"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.14:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "752E350F-E1EB-47CE-95E7-F990F4453BF4"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.15:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F223B411-B9A6-49D4-A9BA-4FBF74B85A0C"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.16:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0F9C4712-169A-4010-B143-98690803E5BB"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.17:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F4E76177-9B90-40F2-AB9D-7C7249DEC497"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.18:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A384E132-188E-40AC-84C9-D46A589EE766"
},
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.0.19:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "27BE1F8C-EE11-4E9B-9745-037F3AC7CC63"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:gnupg:gnupg:2.1.0:beta1:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "10427264-78E1-4FB1-A8EF-BDB0C9822DB5"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "secalert@redhat.com"
}