Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-3365

Опубликовано: 03 окт. 2011
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

The KDE SSL Wrapper (KSSL) API in KDE SC 4.6.0 through 4.7.1, and possibly earlier versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name (CN) of a certificate via rich text.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=743054kdelibs: input validation failure in KSSL

EPSS

Процентиль: 46%
0.00234
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

The KDE SSL Wrapper (KSSL) API in KDE SC 4.6.0 through 4.7.1, and possibly earlier versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name (CN) of a certificate via rich text.

nvd
больше 13 лет назад

The KDE SSL Wrapper (KSSL) API in KDE SC 4.6.0 through 4.7.1, and possibly earlier versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name (CN) of a certificate via rich text.

debian
больше 13 лет назад

The KDE SSL Wrapper (KSSL) API in KDE SC 4.6.0 through 4.7.1, and poss ...

github
около 3 лет назад

The KDE SSL Wrapper (KSSL) API in KDE SC 4.6.0 through 4.7.1, and possibly earlier versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name (CN) of a certificate via rich text.

oracle-oval
больше 13 лет назад

ELSA-2011-1385: kdelibs and kdelibs3 security update (MODERATE)

EPSS

Процентиль: 46%
0.00234
Низкий

4.3 Medium

CVSS2