On Thu, Sep 03, 2015 at 11:59:11AM +0000, Peter Gutmann wrote: > the number of affected implementations would be approximately zero. >
openssl's DSA appears to check primality of q. Attached are pub and private key with q composite (beware the private key might not be generated correctly).
key-comp.key
Description: application/pgp-keys
-----BEGIN PUBLIC KEY----- MIIBqjCCARwGByqGSM44BAEwggEPAoGDHpNuAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAEzMTUsCgYMPSbcAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAJmYm pQIBAgOBhwACgYMcpXCzpFuiXi9u64FFbEj5eew0sGq3LiDqRx1rYz7s/+4CQrU1 Dm+kKYAhryBlV5J3emhTlA6IKp4y9RXlE85Ww9rxv8STUd0Yo45EuIRQHAXZ+CNi 3GgwnLDICEXoVePZ4QldDF15aAi5f23KHEkJdhMveOlXTd/gHT4Qtm12irX1CA== -----END PUBLIC KEY-----
