Описание
offlineimap before 6.3.4 added support for SSL server certificate validation but it is still possible to use SSL v2 protocol, which is a flawed protocol with multiple security deficiencies.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | python 2.7 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [python 2.7]] |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| maverick | ignored | end of life |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | not-affected | python 2.7 |
| quantal | ignored | end of life |
| raring | ignored | end of life |
Показывать по
Ссылки на источники
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
offlineimap before 6.3.4 added support for SSL server certificate validation but it is still possible to use SSL v2 protocol, which is a flawed protocol with multiple security deficiencies.
offlineimap before 6.3.4 added support for SSL server certificate vali ...
offlineimap before 6.3.4 added support for SSL server certificate validation but it is still possible to use SSL v2 protocol, which is a flawed protocol with multiple security deficiencies.
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3