CVE-2008-7272

Severity CVSS v4.0:
Pending analysis
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
08/11/2019
Last modified:
21/11/2024

Description

FireGPG before 0.6 handle user’s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users’s private key.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:getfiregpg:firegpg:*:*:*:*:*:firefox:*:* 0.6 (excluding)