A vulnerability has been reported for KGPG. Reportedly, KGPG generates secret keys in an unsafe manner. The vulnerability is the result of how KGPG sends command line arguments to GPG. All keys generated using the wizard will have an empty passphrase. An attacker can exploit this vulnerability to obtain access to some potentially sensitive information.
A vulnerability has been reported for KGPG. Reportedly, KGPG generates secret keys in an unsafe manner. The vulnerability is the result of how KGPG sends command line arguments to GPG. All keys generated using the wizard will have an empty passphrase. An attacker can exploit this vulnerability to obtain access to some potentially sensitive information.