Back to search
CVE-2011-3061
Published: Mar 30, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
Google Chrome before 18.0.1025.142 does not properly check X.509 certificates before use of a SPDY proxy, which might allow man-in-the-middle attackers to spoof servers or obtain sensitive information via a crafted certificate.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1026877
vdb-entry
x_refsource_SECTRACK
chrome-spdy-sec-bypass(74411)
vdb-entry
x_refsource_XF
48618
third-party-advisory
x_refsource_SECUNIA
48691
third-party-advisory
x_refsource_SECUNIA
80739
vdb-entry
x_refsource_OSVDB
oval:org.mitre.oval:def:14849
vdb-entry
signature
x_refsource_OVAL
52762
vdb-entry
x_refsource_BID
http://code.google.com/p/chromium/issues/detail?id=116398
x_refsource_CONFIRM
48763
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now