vulnerabilityOpenwall oss-security - SHA1 Downgrade
GnuPG may downgrade digest algorithm to SHA1 during key signature checking
A GnuPG vulnerability that may downgrade the digest algorithm to SHA1 during key signature checking.
Exploitation evidence
Has exploited
Affected software
| Software | Affected versions | Fixed in | Sources |
|---|---|---|---|
CVSS (Common Vulnerability Scoring System)
Preferred assessment
Vector
Attack vector
Attack complexity
Privileges required
User interaction
Scope
Confidentiality impact
Integrity impact
Availability impact
Source assessments
EPSS (Exploit Prediction Scoring System)
Probability
Percentile
Model
Preferred remediation
Action