[llvm-bugs] [Bug 31403] New: llvm.org website certificate is insecure according to chrome

via llvm-bugs llvm-bugs at lists.llvm.org
Thu Dec 15 17:29:51 PST 2016


https://llvm.org/bugs/show_bug.cgi?id=31403

            Bug ID: 31403
           Summary: llvm.org website certificate is insecure according to
                    chrome
           Product: Website
           Version: unspecified
          Hardware: All
                OS: All
            Status: NEW
          Severity: normal
          Priority: P
         Component: General Website
          Assignee: unassignedbugs at nondot.org
          Reporter: dberris at google.com
                CC: llvm-bugs at lists.llvm.org
    Classification: Unclassified

According to the security tab on the Chrome console:

SHA-1 Certificate
The certificate for this site expires in 2017 or later, and the certificate
chain contains a certificate signed using SHA-1.

It's well-documented that the SHA-1 hash algorithm for the SSL certificates is
now considered "broken" and is already deprecated.

https://cs.auscert.org.au/news/deprecation-of-sha1-certificates

-- 
You are receiving this mail because:
You are on the CC list for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.llvm.org/pipermail/llvm-bugs/attachments/20161216/843fc416/attachment.html>


More information about the llvm-bugs mailing list