Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-3525

Опубликовано: 25 авг. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8

Описание

s2s/out.c in jabberd2 2.2.16 and earlier does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via a (1) Verify Response or (2) Authorization Response.

РелизСтатусПримечание
devel

not-affected

2.2.8-2.2ubuntu1
hardy

released

2.0s11-1ubuntu4.2
lucid

released

2.2.8-2ubuntu4.0.10.04.2
natty

ignored

end of life
oneiric

released

2.2.8-2ubuntu6.1
precise

released

2.2.8-2.2ubuntu0.12.04.1
quantal

released

2.2.8-2.2ubuntu1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 86%
0.02925
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 13 лет назад

s2s/out.c in jabberd2 2.2.16 and earlier does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via a (1) Verify Response or (2) Authorization Response.

nvd
больше 13 лет назад

s2s/out.c in jabberd2 2.2.16 and earlier does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via a (1) Verify Response or (2) Authorization Response.

debian
больше 13 лет назад

s2s/out.c in jabberd2 2.2.16 and earlier does not verify that a reques ...

github
больше 3 лет назад

s2s/out.c in jabberd2 2.2.16 and earlier does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via a (1) Verify Response or (2) Authorization Response.

EPSS

Процентиль: 86%
0.02925
Низкий

5.8 Medium

CVSS2