Back to Database
Status published
Low
CVE-2000-0445
The pgpk command in PGP 5.x on Unix systems uses...
Vulnerability Description
The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2000-0445
Credits & Attribution
No credits recorded in the NVD database.
References
More from pgp
View All →CVE-2010-3618
PGP Desktop 10.0.x before 10.0.3 SP2 and 10.1.0 before 10.1.0...
Medium
4.3
CVE-2010-3397
Untrusted search path vulnerability in PGP Desktop 9.9.0 Build 397,...
Critical
9.3
CVE-2009-0681
PGP Desktop before 9.10 allows local users to (1) cause...
High
7.2
CVE-2008-5731
The PGPwded device driver (aka PGPwded.sys) in PGP Corporation PGP...
Medium
4.9
CVE-2007-0603
PGP Desktop before 9.5.1 does not validate data objects received...
High
7.1
Affected Vendor
Affected Software
pgp
Vulnerable Versions:
5.0_linux, 5.0i, 6.5_linux
Timeline
Official Publish:
October 13th, 2000
Last Modified:
August 8th, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.