LWN.net Logo

gnutls: signature forge vulnerability

Package(s):gnutls CVE #(s):CVE-2006-4790
Created:September 14, 2006 Updated:September 26, 2006
Description: GnuTLS has a vulnerability with PKCS #1 v1.5 signatures. If an RSA key with exponent 3 is used, an attacker may be able to forge a PKCS #1 v1.5 signature.
Alerts:
Gentoo 200609-15 2006-09-26
Debian DSA-1182-1 2006-09-22
Mandriva MDKSA-2006:166 2006-09-19
Ubuntu USN-348-1 2006-09-18
Fedora FEDORA-2006-974 2006-09-14
Red Hat RHSA-2006:0680-01 2006-09-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds