CVE-2025-67897 | sequoia-pgp sequoia up to 2.0.x PKESK aes_key_unwrap signed to unsigned conversion error (EUVD-2025-203279 / Nessus ID 278628)
A vulnerability described as problematic has been identified in sequoia-pgp sequoia up to 2.0.x. This affects the function aes_key_unwrap of the component PKESK Handler. Such manipulation leads to signed to unsigned conversion error.
This vulnerability is traded as CVE-2025-67897. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.