[jboss-jira] [JBoss JIRA] (ELY-1442) Risky cryptographic hashing function

Martin Choma (JIRA) issues at jboss.org
Mon Nov 13 09:53:00 EST 2017


     [ https://issues.jboss.org/browse/ELY-1442?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Martin Choma closed ELY-1442.
-----------------------------
    Resolution: Rejected


That is per spec https://tools.ietf.org/html/rfc3280.

> Risky cryptographic hashing function
> ------------------------------------
>
>                 Key: ELY-1442
>                 URL: https://issues.jboss.org/browse/ELY-1442
>             Project: WildFly Elytron
>          Issue Type: Bug
>          Components: Certificate Authority
>    Affects Versions: 1.2.0.Beta9
>            Reporter: Martin Choma
>
> Coverity [1] found hard-coded usage of SHA-1, which is considered to be a weak nowadays. 
> Revise please.
> [1] https://scan7.coverity.com/reports.htm#v23632/p11778/fileInstanceId=40178271&defectInstanceId=8614681&mergedDefectId=1461347



--
This message was sent by Atlassian JIRA
(v7.5.0#75005)


More information about the jboss-jira mailing list