Описание
FireGPG before 0.6 handle user’s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users’s private key.
Ссылки
- Issue TrackingThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- Issue TrackingThird Party Advisory
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.6 (исключая)
cpe:2.3:a:getfiregpg:firegpg:*:*:*:*:*:firefox:*:*
EPSS
Процентиль: 44%
0.00218
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-312
Связанные уязвимости
CVSS3: 7.5
debian
около 6 лет назад
FireGPG before 0.6 handle user\u2019s passphrase and decrypted clearte ...
github
почти 4 года назад
FireGPG before 0.6 handle user?s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users?s private key.
EPSS
Процентиль: 44%
0.00218
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-312