GnuPG may downgrade the message digest algorithm to insecure SHA1 algorithm during signature checking due to reading from uninitialized memory.
Reported-by: 49016 and Liam (two-heart)
GnuPG may downgrade the message digest algorithm to insecure SHA1 algorithm during signature checking due to reading from uninitialized memory.
Reported-by: 49016 and Liam (two-heart)
| Status | Assigned | Task | ||
|---|---|---|---|---|
| Testing | None | T7900 Cleartext Signature Forgery in GnuPG | ||
| Resolved | • werner | T7904 GnuPG may downgrade digest algorithm to SHA1 |
Note that for exploiting this bug a second preimage attack for SHA-1 is required. This kind of attack on SHA1 is not yet possible.