Register for the AI for Security Summit: Join Figma, Perplexity & Wiz

CVE-2026-41990
Libgcrypt vulnerability analysis and mitigation

Overview

CVE-2026-41990 is an out-of-bounds write vulnerability in Libgcrypt's Dilithium (post-quantum) signing implementation. Versions 1.12.0 through 1.12.1 are affected; the flaw was introduced with the Dilithium algorithm support added in version 1.12.0. The vulnerability was reported by Calif.io in collaboration with Claude and Anthropic Research, disclosed publicly on April 21, 2026 via the oss-security mailing list, and patched in Libgcrypt 1.12.2 (released April 15, 2026). It carries a CVSS v3.1 base score of 4.0 (Medium) (GitHub Advisory, Openwall).

Technical details

The root cause is a missing bounds check (CWE-787: Out-of-bounds Write) on writes to a static array within the Dilithium signing context handling code in Libgcrypt. Critically, the out-of-bounds writes do not use attacker-controlled data — the values written are internally determined — which significantly limits exploitability. The attack vector is local, requires high attack complexity, and no privileges, meaning an attacker would need specific local conditions to trigger the flaw during a Dilithium signing operation. The bug was tracked internally as GnuPG issue T8208 (Openwall, GitHub Advisory).

Impact

Successful exploitation could result in limited integrity and availability impacts on the affected system; confidentiality is not impacted. Because the out-of-bounds write does not use attacker-controlled data, arbitrary code execution is unlikely, but memory corruption could cause crashes or unpredictable behavior in applications relying on Libgcrypt's Dilithium signing functionality. The scope is unchanged, meaning the impact is confined to the vulnerable component itself (GitHub Advisory, Openwall).

Exploitability

There is no known public proof-of-concept exploit and no evidence of in-the-wild exploitation as of the time of disclosure. The EPSS score is approximately 0.012% (very low probability of exploitation within 30 days), and the vulnerability is not listed in CISA's Known Exploited Vulnerabilities catalog. The high attack complexity and the fact that written data is not attacker-controlled further reduce practical exploitability (GitHub Advisory).

Mitigation and workarounds

The primary remediation is to upgrade Libgcrypt to version 1.12.2 or later, which adds the missing bounds check to the Dilithium context handling. For systems that cannot immediately upgrade, restricting local user access to processes that perform Dilithium signing operations can reduce exposure. Ubuntu has issued security notice USN-8319-1 addressing this vulnerability. No configuration-based workaround is available as a substitute for patching (Openwall, Ubuntu Advisory).

Community reactions

The vulnerability was responsibly disclosed by Werner Koch (GnuPG maintainer) via the gnupg-announce and oss-security mailing lists. The discovery was credited to Calif.io in collaboration with Claude and Anthropic Research, marking a notable instance of AI-assisted security research contributing to an open-source cryptographic library fix. The Yocto Project security team also tracked and communicated the issue to their community via their security mailing list (Openwall).

Additional resources

Linux Distribution fix status

Fix availability across major Linux distributions and their releases.

Debian

Fixed

bookworm

libgcrypt20

Fixed

sid

libgcrypt20: 1.12.2-1

Fixed

trixie

libgcrypt20

Fixed

Ubuntu

Fixed

bionic (esm-infra)

libgcrypt20

Not Affected

bionic (fips-updates)

libgcrypt20

Not Affected

bionic (fips)

libgcrypt20

Not Affected

devel

libgcrypt20

Not Affected

focal (esm-infra)

libgcrypt20

Not Affected

focal (fips-updates)

libgcrypt20

Not Affected

focal (fips)

libgcrypt20

Not Affected

jammy

libgcrypt20

Not Affected

RHEL / CentOS

Affected

OpenShift

openshift/ose-rhel-coreos-8

Affected

RHEL 8

libgcrypt.src

Affected

RHEL 9

libgcrypt.src

Affected

RHEL 10

libgcrypt.src

Affected

SourceThis report was generated using AI

Related Libgcrypt vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2021-33560HIGH7.5
  • NixOS logoNixOS
  • libgcrypt-devel-debuginfo
NoYesJun 08, 2021
CVE-2026-41989MEDIUM6.7
  • Libgcrypt logoLibgcrypt
  • libgcrypt20-32bit
NoYesApr 23, 2026
CVE-2024-2236MEDIUM5.9
  • Libgcrypt logoLibgcrypt
  • libgcrypt.src
NoYesMar 06, 2024
CVE-2021-40528MEDIUM5.9
  • NixOS logoNixOS
  • kernel
NoYesSep 06, 2021
CVE-2026-41990MEDIUM4
  • Libgcrypt logoLibgcrypt
  • thunderbird
NoYesApr 23, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management