Back to search
CVE-2005-4900
Published: Oct 14, 2016
Modified: May 22, 2026
PUBLISHED
Description
SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://sites.google.com/site/itstheshappening
x_refsource_MISC
12577
vdb-entry
x_refsource_BID
http://shattered.io/
x_refsource_MISC
http://ia.cr/2007/474
x_refsource_MISC
https://www.schneier.com/blog/archives/2005/02/sha1_broken.html
x_refsource_MISC
https://kc.mcafee.com/corporate/index?page=content&id=SB10340
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now