Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gj63-3383-h48m

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

OpenSSL, probably 0.9.6, does not verify the Basic Constraints for an intermediate CA-signed certificate, which allows remote attackers to spoof the certificates of trusted sites via a man-in-the-middle attack, a related issue to CVE-2002-0970.

OpenSSL, probably 0.9.6, does not verify the Basic Constraints for an intermediate CA-signed certificate, which allows remote attackers to spoof the certificates of trusted sites via a man-in-the-middle attack, a related issue to CVE-2002-0970.

EPSS

Процентиль: 49%
0.0026
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
почти 17 лет назад

OpenSSL, probably 0.9.6, does not verify the Basic Constraints for an intermediate CA-signed certificate, which allows remote attackers to spoof the certificates of trusted sites via a man-in-the-middle attack, a related issue to CVE-2002-0970.

nvd
почти 17 лет назад

OpenSSL, probably 0.9.6, does not verify the Basic Constraints for an intermediate CA-signed certificate, which allows remote attackers to spoof the certificates of trusted sites via a man-in-the-middle attack, a related issue to CVE-2002-0970.

debian
почти 17 лет назад

OpenSSL, probably 0.9.6, does not verify the Basic Constraints for an ...

EPSS

Процентиль: 49%
0.0026
Низкий

Дефекты

CWE-287