ZERO
Back
vulnerabilityOpenwall oss-security - SHA1 Downgrade

GnuPG may downgrade digest algorithm to SHA1 during key signature checking

A GnuPG vulnerability that may downgrade the digest algorithm to SHA1 during key signature checking.

Exploitation evidence
Has exploited

Affected software

CVSS (Common Vulnerability Scoring System)

Preferred assessment

Vector

Attack vector

Attack complexity

Privileges required

User interaction

Scope

Confidentiality impact

Integrity impact

Availability impact

Source assessments

EPSS (Exploit Prediction Scoring System)

Probability

Percentile

Model

Preferred remediation

Action