CNCVE编号:CNCVE-20000974 CVE编号:CVE-2000-0974 安全级别:中 漏洞中文描述: GnuPG(gpg) 1.0.3不能正确的检查所有的包含多文档的文件的签名,这允许攻击者除了不被检查出来之外还可修改所有文件的内容。 漏洞英文描述: GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection. 漏洞参考: BUGTRAQ:20001011 GPG 1.0.3 doesn't detect modifications to files with multiple signatures | URL:http://archives.neohapsis.com/archives/bugtraq/2000-10/0201.html | REDHAT:RHSA-2000:089-04 | URL:http://www.redhat.com/support/errata/RHSA-2000-089 系统类型:其他 漏洞类型:设计错误