Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3291

Опубликовано: 16 сент. 2009
Источник: redhat
CVSS2: 2.6

Описание

The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=524228php: openssl extension: Incorrect verification of SSL certificate with NUL in name

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
почти 16 лет назад

The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates.

nvd
почти 16 лет назад

The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates.

debian
почти 16 лет назад

The php_openssl_apply_verification_policy function in PHP before 5.2.1 ...

github
около 3 лет назад

The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates.

oracle-oval
больше 15 лет назад

ELSA-2010-0040: php security update (MODERATE)

2.6 Low

CVSS2