Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-5524

Опубликовано: 08 фев. 2014
Источник: debian
EPSS Низкий

Описание

The _ssl_verify_callback function in tls_nb.py in Gajim before 0.15.3 does not properly verify SSL certificates, which allows remote attackers to conduct man-in-the-middle (MITM) attacks and spoof servers via an arbitrary certificate from a trusted CA.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gajimfixed0.15.4-1package
gajimfixed0.15.1-4.1wheezypackage
gajimno-dsasqueezepackage

EPSS

Процентиль: 42%
0.00203
Низкий

Связанные уязвимости

ubuntu
почти 12 лет назад

The _ssl_verify_callback function in tls_nb.py in Gajim before 0.15.3 does not properly verify SSL certificates, which allows remote attackers to conduct man-in-the-middle (MITM) attacks and spoof servers via an arbitrary certificate from a trusted CA.

nvd
почти 12 лет назад

The _ssl_verify_callback function in tls_nb.py in Gajim before 0.15.3 does not properly verify SSL certificates, which allows remote attackers to conduct man-in-the-middle (MITM) attacks and spoof servers via an arbitrary certificate from a trusted CA.

github
больше 3 лет назад

The _ssl_verify_callback function in tls_nb.py in Gajim before 0.15.3 does not properly verify SSL certificates, which allows remote attackers to conduct man-in-the-middle (MITM) attacks and spoof servers via an arbitrary certificate from a trusted CA.

EPSS

Процентиль: 42%
0.00203
Низкий