Back

HIGH

HCL Verse for Android is susceptible to an APK signing key check vulnerability

Published Nov 1, 2022

Description

The application was signed using a key length less than or equal to 1024 bits, making it potentially vulnerable to forged digital signatures. An attacker could forge the same digital signature of the app after maliciously modifying the app.

Affected products

Remediation

No remediation recorded yet.

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner HCL
Published Nov 1, 2022
Updated May 2, 2025
Reserved Dec 30, 2019
CISA Vulnrichment
Updated May 2, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a