Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

GnuPG Signed Message Arbitrary Content Injection Weakness

GnuPG is prone to a weakness that may allow an attacker to add arbitrary content into a message without the end user knowing.

An attacker may be able to exploit this issue in applications using GnuPG to add arbitrary content into a signed and/or encrypted message.

Exploiting this issue depends on the individual application's use of GnuPG. Individual records will be created detailing this issue in affected applications.







 

Privacy Statement
Copyright 2009, SecurityFocus