TROYANOSYVIRUS
Retour aux CVEs

CVE-2014-8155

N/A

Description

GnuTLS before 2.9.10 does not verify the activation and expiration dates of CA certificates, which allows man-in-the-middle attackers to spoof servers via a certificate issued by a CA certificate that is (1) not yet valid or (2) no longer valid.

Details CVE

Score CVSS v3.1N/A
Publie8/14/2015
Derniere modification4/12/2025
Sourcenvd
Observations honeypot0

Produits affectes

gnu:gnutls

Faiblesses (CWE)

CWE-17

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.