Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1429

Опубликовано: 16 мар. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8

Описание

Mutt does not verify that the smtps server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL SMTP server via an arbitrary certificate, a different vulnerability than CVE-2009-3766.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

1.5.21-5
hardy

not-affected

karmic

ignored

end of life
lucid

released

1.5.20-7ubuntu1.1
maverick

released

1.5.20-9ubuntu2.1
natty

released

1.5.21-2ubuntu3.1
upstream

released

1.5.21-5

Показывать по

EPSS

Процентиль: 67%
0.00553
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 14 лет назад

Mutt does not verify that the smtps server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL SMTP server via an arbitrary certificate, a different vulnerability than CVE-2009-3766.

nvd
больше 14 лет назад

Mutt does not verify that the smtps server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL SMTP server via an arbitrary certificate, a different vulnerability than CVE-2009-3766.

debian
больше 14 лет назад

Mutt does not verify that the smtps server hostname matches the domain ...

github
около 3 лет назад

Mutt does not verify that the smtps server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL SMTP server via an arbitrary certificate, a different vulnerability than CVE-2009-3766.

oracle-oval
около 14 лет назад

ELSA-2011-0959: mutt security update (MODERATE)

EPSS

Процентиль: 67%
0.00553
Низкий

5.8 Medium

CVSS2