Unrated severityNVD Advisory· Published Dec 19, 2000· Updated Apr 16, 2026
CVE-2000-0974
CVE-2000-0974
Description
GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection.
Affected products
4cpe:2.3:a:gnu:privacy_guard:1.0:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:gnu:privacy_guard:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:gnu:privacy_guard:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:gnu:privacy_guard:1.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:gnu:privacy_guard:1.0.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- www.securityfocus.com/bid/1797nvdExploitPatchVendor Advisory
- ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:67.gnupg.ascnvd
- ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-038.0.txtnvd
- archives.neohapsis.com/archives/bugtraq/2000-10/0201.htmlnvd
- archives.neohapsis.com/archives/bugtraq/2000-10/0361.htmlnvd
- distro.conectiva.com.br/atualizacoes/nvd
- www.debian.org/security/2000/20001111nvd
- www.osvdb.org/1608nvd
- www.redhat.com/support/errata/RHSA-2000-089.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/5386nvd
News mentions
0No linked articles in our index yet.