* getkey.c (get_pubkey_byname): Fix minor security problem with PKA when
authorDavid Shaw <dshaw@jabberwocky.com>
Tue, 21 Feb 2006 22:23:35 +0000 (22:23 +0000)
committerDavid Shaw <dshaw@jabberwocky.com>
Tue, 21 Feb 2006 22:23:35 +0000 (22:23 +0000)
commitd038b36c8f814e518c64b608b51a551186c5440e
tree4a33646bcd060d9b5b1ee31cfa90b44a220e87b5
parente4206de3f50195955efd7ddb324719eb9d163416
* getkey.c (get_pubkey_byname): Fix minor security problem with PKA when
importing at -r time.  The URL in the PKA record may point to a key put in
by an attacker.  Fix is to use the fingerprint from the PKA record as the
recipient.  This ensures that the PKA record is followed.

* keyserver-internal.h, keyserver.c (keyserver_import_pka): Return the
fingerprint we requested.
g10/ChangeLog
g10/getkey.c
g10/gpgv.c
g10/keyserver-internal.h
g10/keyserver.c