OpenSSL Use of a Broken or Risky Cryptographic Algorithm Vulnerability - CVE-2005-2946
Reference:
CVE-2005-2946
Title:
OpenSSL Use of a Broken or Risky Cryptographic Algorithm Vulnerability
Overview:
The default configuration on OpenSSL before 0.9.8 uses MD5 for creating message digests instead of a more cryptographically strong algorithm which makes it easier for remote attackers to forge certificates with a valid certificate authority signature.