#239 new

smartcard usage: Encrypt and Sign appears to succeded with wrong PIN

Reported by steve | February 22nd, 2017 @ 05:37 PM

smartcard required to reproduce

User reported on Tender:

It is possible for an "encrypt and sign" operation to fail without the user being notified, producing an encrypted but unsigned file. I can reproduce this by providing the wrong PIN to a smart card, it probably also applies to signing keys with passphrase.

Steps to reproduce:
1. Select a file to encrypt using the Finder services menu
2. Sign and encrypt the file to yourself
3. Enter the wrong PIN for the signing key

There is a dialog saying that the encryption was successful.
An encrypted but unsigned file is created.

There is a dialog saying that the signing failed.
There is no dialog indicating any kind of success.
There is no file created.

Comments and changes to this ticket

Please Sign in or create a free account to add a new ticket.

With your very own profile, you can contribute to projects, track your activity, watch tickets, receive and update tickets through your email and much more.

New-ticket Create new ticket

Create your profile

Help contribute to this project by taking a few moments to create your personal profile. Create your profile ยป

Shared Ticket Bins

People watching this ticket