Описание
FireGPG before 0.6 handle user’s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users’s private key.
Ссылки
- Issue TrackingThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- Issue TrackingThird Party Advisory
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.6 (исключая)
cpe:2.3:a:getfiregpg:firegpg:*:*:*:*:*:firefox:*:*
EPSS
Процентиль: 56%
0.00888
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-312
Связанные уязвимости
CVSS3: 7.5
debian
почти 7 лет назад
FireGPG before 0.6 handle user\u2019s passphrase and decrypted clearte ...
github
больше 4 лет назад
FireGPG before 0.6 handle user?s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users?s private key.
EPSS
Процентиль: 56%
0.00888
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-312