Earlier quoted context omitted.
Someone made a fake key for each of the participants in a particular keysigning party in October 2013 (including me) and uploaded the fake keys to keyservers. Because the creation date of the fake key for me is newer than the creation date of my real key, apparently Enigmail is suggesting it to people and they're choosing to use it, despite the lack of signatures. More than a dozen different people have now sent me e…
This sounds like an implementation as opposed to design flaw. Enigmail should be throwing up red flags all over the place when duplicates exist. That being said, this is perilously close to the "No True Scotsman" fallacy.
https://en.wikipedia.org/wiki/Seth_Schoen
His hopelessly out-of-date homepage: http://www.loyalty.org/~schoen/
That said, yes, PGP has a notable failing in that there's no reliable method for repudiating a key, particularly one generated by a hostile party.
If you've hung on to your key revocation certificate you can revoke a key you have generated. But that's only a small part of the battle.