TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2012-1177

N/A

Beschreibung

libgdata before 0.10.2 and 0.11.x before 0.11.1 does not validate SSL certificates, which allows remote attackers to obtain user names and passwords via a man-in-the-middle (MITM) attack with a spoofed certificate.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht8/26/2012
Zuletzt geandert4/11/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

gnome:libgdata

Schwachen (CWE)

CWE-20

Referenzen

http://secunia.com/advisories/50432(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2012/dsa-2482(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/03/14/1(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/03/14/3(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/03/14/8(af854a3a-2127-422b-91ae-364da2661108)
http://www.ubuntu.com/usn/USN-1547-1(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.gnome.org/show_bug.cgi?id=671535(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.novell.com/show_bug.cgi?id=752088(af854a3a-2127-422b-91ae-364da2661108)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.