
smartcard usage: Encrypt and Sign appears to succeded with wrong PIN
Reported by steve | February 22nd, 2017 @ 05:37 PM
smartcard required to reproduce
User reported on Tender:
It is possible for an "encrypt and sign" operation to fail without the user being notified, producing an encrypted but unsigned file. I can reproduce this by providing the wrong PIN to a smart card, it probably also applies to signing keys with passphrase.
Steps to reproduce:
1. Select a file to encrypt using the Finder services menu
2. Sign and encrypt the file to yourself
3. Enter the wrong PIN for the signing key
There is a dialog saying that the encryption was successful.
An encrypted but unsigned file is created.
Expected
There is a dialog saying that the signing failed.
There is no dialog indicating any kind of success.
There is no file created.
Comments and changes to this ticket
-
-
steve May 4th, 2017 @ 04:48 PM
- Title changed from Encrypt and Sign appears to succeded with wrong PIN to smartcard usage: Encrypt and Sign appears to succeded with wrong PIN
Please Sign in or create a free account to add a new ticket.
With your very own profile, you can contribute to projects, track your activity, watch tickets, receive and update tickets through your email and much more.