TROYANOSYVIRUS
Volver a CVEs

CVE-2014-8155

N/A

Descripcion

GnuTLS before 2.9.10 does not verify the activation and expiration dates of CA certificates, which allows man-in-the-middle attackers to spoof servers via a certificate issued by a CA certificate that is (1) not yet valid or (2) no longer valid.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado8/14/2015
Ultima modificacion4/12/2025
Fuentenvd
Avistamientos honeypot0

Productos afectados

gnu:gnutls

Debilidades (CWE)

CWE-17

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.