积极预防 及时发现
快速响应 力保恢复
PGP 7.0使用的split 密钥机制允许密钥持有者通过设置“Cache passphrase w...
发布时间:2001-07-02 信息来源:管理员

CNCVE编号:CNCVE-20010435 CVE编号:CAN-2001-0435 安全级别:中 漏洞中文描述: PGP 7.0使用的split 密钥机制允许密钥持有者通过设置“Cache passphrase while logged on”选项来获得权限并可以在其他密码持有者认证时获得passphrase。 漏洞英文描述: The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the "Cache passphrase while logged on" option and capturing the passphrases of other share holders as they authenticate. 漏洞参考: Reference: BUGTRAQ:20010410 PGP 7.0 Split Key/Cached Passphrase Vulnerability Reference: URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98691775527457&w=2 系统类型: Win2000/NT 漏洞类型:权限有效性检查错误