RSS   Vulnerabilities for 'Pkcs 11 library'   RSS

2002-08-01
 
CVE-2002-1446

 

 
The error checking routine used for the C_Verify call on a symmetric verification key in the nCipher PKCS#11 library 1.2.0 and later returns the CKR_OK status even when it detects an invalid signature, which could allow remote attackers to modify or forge messages.

 

 >>> Vendor: Ncipher 15 Products
Ncipher
Mscapi csp
Nforce
Nshield
Pkcs 11 library
Support software
Payshield spp library
CHIL
Ncipher software cd
Ncore
Dse200 document sealing engine
Securedb
Time source master clock
Nethsm
Payshield


Copyright 2024, cxsecurity.com

 

Back to Top