|
|
| |
|
| |
gnupg: key spoofing
| Package(s): | gnupg, gnupg2 |
CVE #(s): | |
| Created: | September 17, 2012 |
Updated: | September 21, 2012 |
| Description: |
From the Ubuntu advisory:
It was discovered that GnuPG used a short ID when downloading keys from a
keyserver, even if a long ID was requested. An attacker could possibly use
this to return a different key with a duplicate short key id. |
| Alerts: |
|
( Log in to post comments)
|
|
|