Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mgj4-gg2g-j7vw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue existed in the handling of S-MIME certificates. This issue was addressed with improved validation of S-MIME certificates. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing.

An issue existed in the handling of S-MIME certificates. This issue was addressed with improved validation of S-MIME certificates. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing.

EPSS

Процентиль: 25%
0.00088
Низкий

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 3.3
nvd
больше 5 лет назад

An issue existed in the handling of S-MIME certificates. This issue was addressed with improved validation of S-MIME certificates. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing.

EPSS

Процентиль: 25%
0.00088
Низкий

Дефекты

CWE-295