Логотип exploitDog
bind:CVE-2009-5138
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-5138

Количество 7

Количество 7

ubuntu логотип

CVE-2009-5138

больше 11 лет назад

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

CVSS2: 5.8
EPSS: Низкий
redhat логотип

CVE-2009-5138

больше 16 лет назад

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2009-5138

больше 11 лет назад

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

CVSS2: 5.8
EPSS: Низкий
debian логотип

CVE-2009-5138

больше 11 лет назад

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag ...

CVSS2: 5.8
EPSS: Низкий
github логотип

GHSA-754r-c6vv-mv5g

больше 3 лет назад

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

EPSS: Низкий
oracle-oval логотип

ELSA-2014-0247

больше 11 лет назад

ELSA-2014-0247: gnutls security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0675-1

около 11 лет назад

Security update for gnutls

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2009-5138

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

CVSS2: 5.8
1%
Низкий
больше 11 лет назад
redhat логотип
CVE-2009-5138

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

CVSS2: 5.8
1%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-5138

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

CVSS2: 5.8
1%
Низкий
больше 11 лет назад
debian логотип
CVE-2009-5138

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag ...

CVSS2: 5.8
1%
Низкий
больше 11 лет назад
github логотип
GHSA-754r-c6vv-mv5g

GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.

1%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2014-0247

ELSA-2014-0247: gnutls security update (IMPORTANT)

больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0675-1

Security update for gnutls

около 11 лет назад

Уязвимостей на страницу