Количество 8
Количество 8
CVE-2019-12290
GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.
CVE-2019-12290
GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.
CVE-2019-12290
GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specifi ...
GHSA-5pjp-55fh-7frw
GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.
BDU:2020-01339
Уязвимость компонента RFC3490 библиотеки Libidn2, позволяющая нарушителю создать вредоносный домен, который соответствует целевому домену
openSUSE-SU-2019:2613-1
Security update for libidn2
openSUSE-SU-2019:2611-1
Security update for libidn2
SUSE-SU-2019:3086-1
Security update for libidn2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-12290 GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated. | CVSS3: 7.5 | 3% Низкий | больше 6 лет назад | |
CVE-2019-12290 GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated. | CVSS3: 7.5 | 3% Низкий | больше 6 лет назад | |
CVE-2019-12290 GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specifi ... | CVSS3: 7.5 | 3% Низкий | больше 6 лет назад | |
GHSA-5pjp-55fh-7frw GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated. | CVSS3: 7.5 | 3% Низкий | больше 3 лет назад | |
BDU:2020-01339 Уязвимость компонента RFC3490 библиотеки Libidn2, позволяющая нарушителю создать вредоносный домен, который соответствует целевому домену | CVSS3: 7.5 | 3% Низкий | около 6 лет назад | |
openSUSE-SU-2019:2613-1 Security update for libidn2 | около 6 лет назад | |||
openSUSE-SU-2019:2611-1 Security update for libidn2 | около 6 лет назад | |||
SUSE-SU-2019:3086-1 Security update for libidn2 | около 6 лет назад |
Уязвимостей на страницу