Uploaded image for project: 'Security Data'
  1. Security Data
  2. SECDATA-300

Update CSAF signing key so that it does not include SHA-1 signatures

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Normal Normal
    • None
    • None
    • csaf-advisories
    • None
    • False
    • Hide

      None

      Show
      None
    • False

      The signing key used to sign all our CSAF files contains SHA-1 signatures. When a signing key is available that does not contain these insecure artifacts, re-sign all files.

      Depends on a fix in gnupg: https://bugzilla.redhat.com/show_bug.cgi?id=2070722

            mprpic@redhat.com Martin Prpic
            mprpic@redhat.com Martin Prpic
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: