XML Digital Signatures generated and validated using this package use SHA-1, which may allow an attacker to craft inputs which cause hash collisions depending on their control over the input.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Go

Published: 2022-12-27T21:13:29.296Z

Updated: 2024-08-04T17:30:08.406Z

Reserved: 2022-07-29T18:37:18.341Z

Link: CVE-2020-36563

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-12-28T03:15:09.560

Modified: 2023-01-06T17:43:00.560

Link: CVE-2020-36563

cve-icon Redhat

No data.