Back to search
CVE-2013-4488
Published: Oct 10, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
GLSA-201508-02
vendor-advisory
x_refsource_GENTOO
https://bugzilla.redhat.com/show_bug.cgi?id=1025718
x_refsource_CONFIRM
63473
vdb-entry
x_refsource_BID
[oss-security] 20131031 Re: CVE Request
mailing-list
x_refsource_MLIST
[libgadu-devel] 20130602 Re: How to Report a Security Bug in libgadu
mailing-list
x_refsource_MLIST
MDVSA-2014:185
vendor-advisory
x_refsource_MANDRIVA
FEDORA-2013-23260
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now