GnuPG may downgrade the message digest algorithm to insecure SHA1 algorithm during signature checking due to reading from uninitialized memory.
Reported-by: 49016 and Liam (two-heart)
GnuPG may downgrade the message digest algorithm to insecure SHA1 algorithm during signature checking due to reading from uninitialized memory.
Reported-by: 49016 and Liam (two-heart)
| Status | Assigned | Task | ||
|---|---|---|---|---|
| Unknown Object (Maniphest Task) | ||||
| Testing | None | T7904 GnuPG may downgrade digest algorithm to SHA1 |