{
  "modified": "2025-08-09T19:01:28Z",
  "published": "2007-03-06T20:19:00Z",
  "id": "CVE-2007-1263",
  "details": "GnuPG 1.4.6 and earlier and GPGME before 1.1.4, when run from the command line, does not visually distinguish signed and unsigned portions of OpenPGP messages with multiple components, which might allow remote attackers to forge the contents of a message without detection.",
  "references": [
    {
      "type": "ADVISORY",
      "url": "ftp://patches.sgi.com/support/free/security/advisories/20070301-01-P.asc"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24365"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24407"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24419"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24420"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24438"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24489"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24511"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24544"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24650"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24734"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/24875"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.coresecurity.com/?action=item\u0026id=1687"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.debian.org/security/2007/dsa-1266"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.mandriva.com/security/advisories?name=MDKSA-2007:059"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.ubuntu.com/usn/usn-432-1"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.ubuntu.com/usn/usn-432-2"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.vupen.com/english/advisories/2007/0835"
    },
    {
      "type": "FIX",
      "url": "http://www.coresecurity.com/?action=item\u0026id=1687"
    },
    {
      "type": "WEB",
      "url": "http://fedoranews.org/cms/node/2775"
    },
    {
      "type": "WEB",
      "url": "http://fedoranews.org/cms/node/2776"
    },
    {
      "type": "WEB",
      "url": "http://lists.gnupg.org/pipermail/gnupg-users/2007-March/030514.html"
    },
    {
      "type": "WEB",
      "url": "http://lists.suse.com/archive/suse-security-announce/2007-Mar/0008.html"
    },
    {
      "type": "WEB",
      "url": "http://securityreason.com/securityalert/2353"
    },
    {
      "type": "WEB",
      "url": "http://support.avaya.com/elmodocs2/security/ASA-2007-144.htm"
    },
    {
      "type": "WEB",
      "url": "http://www.redhat.com/support/errata/RHSA-2007-0106.html"
    },
    {
      "type": "WEB",
      "url": "http://www.redhat.com/support/errata/RHSA-2007-0107.html"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/archive/1/461958/100/0/threaded"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/archive/1/461958/30/7710/threaded"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/bid/22757"
    },
    {
      "type": "WEB",
      "url": "http://www.securitytracker.com/id?1017727"
    },
    {
      "type": "WEB",
      "url": "http://www.trustix.org/errata/2007/0009/"
    },
    {
      "type": "WEB",
      "url": "https://issues.rpath.com/browse/RPL-1111"
    },
    {
      "type": "WEB",
      "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10496"
    }
  ]
}
