Количество 5
Количество 5
CVE-2020-7043
An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL before 1.0.2. tunnel.c mishandles certificate validation because hostname comparisons do not consider '\0' characters, as demonstrated by a good.example.com\x00evil.example.com attack.
CVE-2020-7043
An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL before 1.0.2. tunnel.c mishandles certificate validation because hostname comparisons do not consider '\0' characters, as demonstrated by a good.example.com\x00evil.example.com attack.
CVE-2020-7043
An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL ...
GHSA-4pqj-5gg5-44jh
An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL before 1.0.2. tunnel.c mishandles certificate validation because hostname comparisons do not consider '\0' characters, as demonstrated by a good.example.com\x00evil.example.com attack.
openSUSE-SU-2020:0301-1
Security update for openfortivpn
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-7043 An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL before 1.0.2. tunnel.c mishandles certificate validation because hostname comparisons do not consider '\0' characters, as demonstrated by a good.example.com\x00evil.example.com attack. | CVSS3: 9.1 | 0% Низкий | почти 6 лет назад | |
CVE-2020-7043 An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL before 1.0.2. tunnel.c mishandles certificate validation because hostname comparisons do not consider '\0' characters, as demonstrated by a good.example.com\x00evil.example.com attack. | CVSS3: 9.1 | 0% Низкий | почти 6 лет назад | |
CVE-2020-7043 An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL ... | CVSS3: 9.1 | 0% Низкий | почти 6 лет назад | |
GHSA-4pqj-5gg5-44jh An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL before 1.0.2. tunnel.c mishandles certificate validation because hostname comparisons do not consider '\0' characters, as demonstrated by a good.example.com\x00evil.example.com attack. | CVSS3: 9.1 | 0% Низкий | больше 3 лет назад | |
openSUSE-SU-2020:0301-1 Security update for openfortivpn | почти 6 лет назад |
Уязвимостей на страницу