Security Advisory

CVE-2006-0803

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-02-23 20:00:00
Last updated 2024-08-07 16:48:56
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The signature verification functionality in the YaST Online Update (YOU) script handling relies on a gpg feature that is not intended for signature verification, which prevents YOU from detecting malicious scripts or code that do not pass the signature check when gpg 1.4.x is being used.