TROYANOSYVIRUS
Retour aux CVEs

CVE-2012-1177

N/A

Description

libgdata before 0.10.2 and 0.11.x before 0.11.1 does not validate SSL certificates, which allows remote attackers to obtain user names and passwords via a man-in-the-middle (MITM) attack with a spoofed certificate.

Details CVE

Score CVSS v3.1N/A
Publie8/26/2012
Derniere modification4/11/2025
Sourcenvd
Observations honeypot0

Produits affectes

gnome:libgdata

Faiblesses (CWE)

CWE-20

References

http://secunia.com/advisories/50432(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2012/dsa-2482(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/03/14/1(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/03/14/3(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/03/14/8(af854a3a-2127-422b-91ae-364da2661108)
http://www.ubuntu.com/usn/USN-1547-1(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.gnome.org/show_bug.cgi?id=671535(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.novell.com/show_bug.cgi?id=752088(af854a3a-2127-422b-91ae-364da2661108)

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.