Логотип exploitDog
bind:CVE-2015-1793
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-1793

Количество 8

Количество 8

ubuntu логотип

CVE-2015-1793

больше 10 лет назад

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS3: 6.5
EPSS: Высокий
redhat логотип

CVE-2015-1793

больше 10 лет назад

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS2: 5.8
EPSS: Высокий
nvd логотип

CVE-2015-1793

больше 10 лет назад

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS3: 6.5
EPSS: Высокий
debian логотип

CVE-2015-1793

больше 10 лет назад

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0 ...

CVSS3: 6.5
EPSS: Высокий
github логотип

GHSA-4j29-v246-6w5w

больше 3 лет назад

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS3: 6.5
EPSS: Высокий
fstec логотип

BDU:2015-11040

больше 10 лет назад

Уязвимость библиотеки OpenSSL, позволяющая нарушителю нарушить штатную процедуру проверки цепочек сертификатов

CVSS2: 6.4
EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2015:2303-1

около 10 лет назад

Security update for mysql

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2015:2243-1

около 10 лет назад

Security update to MySQL 5.6.27

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-1793

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS3: 6.5
86%
Высокий
больше 10 лет назад
redhat логотип
CVE-2015-1793

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS2: 5.8
86%
Высокий
больше 10 лет назад
nvd логотип
CVE-2015-1793

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS3: 6.5
86%
Высокий
больше 10 лет назад
debian логотип
CVE-2015-1793

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0 ...

CVSS3: 6.5
86%
Высокий
больше 10 лет назад
github логотип
GHSA-4j29-v246-6w5w

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS3: 6.5
86%
Высокий
больше 3 лет назад
fstec логотип
BDU:2015-11040

Уязвимость библиотеки OpenSSL, позволяющая нарушителю нарушить штатную процедуру проверки цепочек сертификатов

CVSS2: 6.4
86%
Высокий
больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:2303-1

Security update for mysql

около 10 лет назад
suse-cvrf логотип
openSUSE-SU-2015:2243-1

Security update to MySQL 5.6.27

около 10 лет назад

Уязвимостей на страницу