Back to search
CVE-2014-7202
Published: Oct 8, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
stream_engine.cpp in libzmq (aka ZeroMQ/C++)) 4.0.5 before 4.0.5 allows man-in-the-middle attackers to conduct downgrade attacks via a crafted connection request.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20140927 Re: CVE request: zeromq
mailing-list
x_refsource_MLIST
openSUSE-SU-2014:1381
vendor-advisory
x_refsource_SUSE
zeromq-handshake-sec-bypass(96241)
vdb-entry
x_refsource_XF
https://github.com/zeromq/libzmq/pull/1188
x_refsource_CONFIRM
openSUSE-SU-2014:1493
vendor-advisory
x_refsource_SUSE
70157
vdb-entry
x_refsource_BID
https://github.com/zeromq/libzmq/issues/1190
x_refsource_CONFIRM
[oss-security] 20140926 CVE request: zeromq
mailing-list
x_refsource_MLIST
62262
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now