Skip to content
Snippets Groups Projects
Unverified Commit e04f03f9 authored by boklm's avatar boklm
Browse files

Bug 30480: Check that a signed tag object contains the expected tag name

When checking the signature on a tag, we also need to check that the tag
is really the expected tag in order to avoid rollback attacks.

Thanks to Santiago Torres-Arias and Keving Gallagher from NYU for
reporting and helping to fix this issue.
parent 87adfb7b
No related branches found
No related tags found
No related merge requests found
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment