TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2014-8155

N/A

Beschreibung

GnuTLS before 2.9.10 does not verify the activation and expiration dates of CA certificates, which allows man-in-the-middle attackers to spoof servers via a certificate issued by a CA certificate that is (1) not yet valid or (2) no longer valid.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht8/14/2015
Zuletzt geandert4/12/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

gnu:gnutls

Schwachen (CWE)

CWE-17

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.