> A "vulnerability" that requires the opponent to have write access > to your private key in order to exploit? > > Okay. What was PGP's threat model again? I'd have sworn that this > was squarely outside it. Probably. Do you need only write access? What does that do for smart cards - if anything? -David
- Re: PGP flaw found by Czech firm allows dig sig to be for... Ian Goldberg
- Re: PGP flaw found by Czech firm allows dig sig to b... Nikita Borisov
- Re: PGP flaw found by Czech firm allows dig sig to b... Ray Dillinger
- RE: PGP flaw found by Czech firm allows dig sig ... dmolnar
- RE: PGP flaw found by Czech firm allows dig sig ... Phillip H. Zakas