Описание
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | ignored | end of standard support, was needed |
| cosmic | ignored | end of life |
| devel | needed | |
| disco | ignored | end of life |
| eoan | ignored | end of life |
| esm-apps-legacy/xenial | needed | |
| esm-apps/bionic | needed | |
| esm-apps/focal | needed | |
| esm-apps/jammy | needed |
Показывать по
10
EPSS
Процентиль: 58%
0.00966
Низкий
4.3 Medium
CVSS2
Связанные уязвимости
redhat
около 13 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
nvd
почти 12 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
debian
почти 12 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL serv ...
github
около 4 лет назад
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
EPSS
Процентиль: 58%
0.00966
Низкий
4.3 Medium
CVSS2