Описание
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libgadu | unfixed | package |
Примечания
Intentional design decision
EPSS
Процентиль: 58%
0.00966
Низкий
Связанные уязвимости
ubuntu
почти 12 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
redhat
около 13 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
nvd
почти 12 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
github
около 4 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
EPSS
Процентиль: 58%
0.00966
Низкий