Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-1000415

Опубликовано: 09 янв. 2018
Источник: nvd
CVSS3: 5.9
CVSS2: 4.3
EPSS Низкий

Описание

MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation in its X.509 certificate validation process resulting in some certificates have their expiration (beginning) year extended (delayed) by 100 years.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:matrixssl:matrixssl:3.7.2:*:*:*:*:*:*:*

EPSS

Процентиль: 29%
0.00107
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 8 лет назад

MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation in its X.509 certificate validation process resulting in some certificates have their expiration (beginning) year extended (delayed) by 100 years.

CVSS3: 5.9
debian
около 8 лет назад

MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation ...

CVSS3: 5.9
github
больше 3 лет назад

MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation in its X.509 certificate validation process resulting in some certificates have their expiration (beginning) year extended (delayed) by 100 years.

EPSS

Процентиль: 29%
0.00107
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-295