Revision Date: | 2013-04-29 | Version: | 11 | Title: | GnuPG (GPG) 1.0.2, and other versions up to 1.2.3, creates ElGamal type 20 (sign+encrypt) keys using the same key component for encryption as for signing, which allows attackers to determine the private key from a signature. | Description: | GnuPG (GPG) 1.0.2, and other versions up to 1.2.3, creates ElGamal type 20 (sign+encrypt) keys using the same key component for encryption as for signing, which allows attackers to determine the private key from a signature. | Family: | unix | Class: | vulnerability | Status: | ACCEPTED | Reference(s): | CVE-2003-0971
| Platform(s): | CentOS Linux 3 Red Hat Enterprise Linux 3
| Product(s): | | Definition Synopsis | RHEL3 or CentOS3 The operating system installed on the system is Red Hat Enterprise Linux 3
OR CentOS Linux 3.x
AND gnupg is earlier than 0:1.2.1-10
|
|