This sounds like multiple RCE issues in common PGP and S/MIME software, but the details are vague so far. Or it could be a side channel issue. Hmm.https://twitter.com/EFF/status/995906839958061056 …
I'm guessing is it's one of those "let's try to find vulns in all the implementations" research teams.
-
-
This Tweet is unavailable.
-
Nobody uses that stuff for GPG anyway. It sounds to me like a series of vulns in common core implementations (i.e. gnupg and whatever people use for S/MIME) that are exploitable in an email context (and possibly others).
End of conversation
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.