CVE-2003-0971

Impact:
Important
Public Date:
2003-11-27
Bugzilla:
1617110: CVE-2003-0971 security flaw

The MITRE CVE dictionary describes this issue as:

GnuPG (GPG) 1.0.2, and other versions up to 1.2.3, creates ElGamal type 20 (sign+encrypt) keys using the same key component for encryption as for signing, which allows attackers to determine the private key from a signature.

Find out more about CVE-2003-0971 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 3 (gnupg) RHSA-2003:395 2003-12-11
Red Hat Linux 7.1 RHSA-2003:390 2003-12-11
Red Hat Linux 8.0 RHSA-2003:390 2003-12-11
Red Hat Linux 7.2 RHSA-2003:390 2003-12-11
Red Hat Linux 7.3 RHSA-2003:390 2003-12-11
Red Hat Enterprise Linux 2.1 RHSA-2003:395 2003-12-11
Red Hat Linux 9 RHSA-2003:390 2003-12-11

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.