Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
Unknown
Privileges Required
Unknown
Attack Vector
Unknown
0

CVE-2003-0971

Disclosure Date: December 15, 2003
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

GnuPG (GPG) 1.0.2, and other versions up to 1.2.3, creates ElGamal type 20 (sign+encrypt) keys using the same key component for encryption as for signing, which allows attackers to determine the private key from a signature.

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

General Information

Technical Analysis