[kleopatra] [Bug 358210] New: Add support for secure checksums: SHA-2 instead of SHA-1 and MD5

Christian Stadelmann via KDE Bugzilla bugzilla_noreply at kde.org
Tue Jan 19 13:05:25 GMT 2016


https://bugs.kde.org/show_bug.cgi?id=358210

            Bug ID: 358210
           Summary: Add support for secure checksums: SHA-2 instead of
                    SHA-1 and MD5
           Product: kleopatra
           Version: 2.2.0
          Platform: Fedora RPMs
                OS: Linux
            Status: UNCONFIRMED
          Severity: normal
          Priority: NOR
         Component: general
          Assignee: aheinecke at intevation.de
          Reporter: dah5aeZe at genodeftest.de
                CC: kdepim-bugs at kde.org, mutz at kde.org

Currently Kleopatra supports md5sum and sha1sum to generate checksums. Using
sha256sum and sha512sum would be highly appreciated since MD5 is known to be
broken for years and SHA-1 is very weak, its use is highly discouraged.

Reproducible: Always

Steps to Reproduce:
1. Open preferences
2. go to crypto operations, tab "File operations"
3. choose "Checksum program to use"

Actual Results:  
only md5sum (broken) and sha1sum (very weak) are available

Expected Results:  
sha256sum and sha512sum should be available. If possible (violation of
standards?) one of those commands based on SHA-2 should be default.

-- 
You are receiving this mail because:
You are on the CC list for the bug.



More information about the Kdepim-bugs mailing list