Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-5144

Опубликовано: 03 фев. 2018
Источник: debian
EPSS Низкий

Описание

mod-gnutls does not validate client certificates when "GnuTLSClientVerify require" is set in a directory context, which allows remote attackers to spoof clients via a crafted certificate.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mod-gnutlsfixed0.5.6-1package

Примечания

  • http://issues.outoforder.cc/view.php?id=93

EPSS

Процентиль: 38%
0.00163
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 8 лет назад

mod-gnutls does not validate client certificates when "GnuTLSClientVerify require" is set in a directory context, which allows remote attackers to spoof clients via a crafted certificate.

CVSS3: 7.5
nvd
почти 8 лет назад

mod-gnutls does not validate client certificates when "GnuTLSClientVerify require" is set in a directory context, which allows remote attackers to spoof clients via a crafted certificate.

CVSS3: 7.5
github
больше 3 лет назад

mod-gnutls does not validate client certificates when "GnuTLSClientVerify require" is set in a directory context, which allows remote attackers to spoof clients via a crafted certificate.

EPSS

Процентиль: 38%
0.00163
Низкий