I’ve submitted a bug id for the MD5/X509 cert collision reported by Lenstra, Wang and Weger.
The PDF files is attached to the bug report.
Using SHA instead of MD5 avoids the collision.
Recommend we only use SHA to sign certs.
any comments?
Robert
I’ve submitted a bug id for the MD5/X509 cert collision reported by Lenstra, Wang and Weger.
The PDF files is attached to the bug report.
Using SHA instead of MD5 avoids the collision.
Recommend we only use SHA to sign certs.
any comments?
Robert