CNCVE编号:CNCVE-20010435 CVE编号:CAN-2001-0435 安全级别:中 漏洞中文描述: PGP 7.0使用的split 密钥机制允许密钥持有者通过设置“Cache passphrase while logged on”选项来获得权限并可以在其他密码持有者认证时获得passphrase。 漏洞英文描述: The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the "Cache passphrase while logged on" option and capturing the passphrases of other share holders as they authenticate. 漏洞参考: Reference: BUGTRAQ:20010410