Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Subject: [Security Announce] [ MDVSA-2008:227-1 ] gnutls

BugsAlert Home > Mandriva: Subject: [Security Announce] [ MDVSA-2008:227-1 ] gnutls
 
 

LinuxSecurity.com: Martin von Gagern found a flow in how GnuTLS versions 1.2.4 up until 2.6.1 verified certificate chains provided by a server. A malicious server could use this flaw to spoof its identity by tricking client applications that used the GnuTLS library to trust invalid certificates (CVE-2008-4989).




Original Source: http://www.linuxsecurity.com/content/view/144332?rdf

Learn more about Mandriva: Subject: [Security Announce] [ MDVSA-2008:227-1 ] gnutls
 
Tags: mandriva subject security announce mdvsa-2008 227-1 gnutls

Related Items

      rPath update for unzip

      CVE-2008-2735 (adaptive_security_appliance_5500)

      CVE-2008-0623 (Yahoo Music Jukebox)

      How To Set Up Shorewall (Shoreline) 4.0 Firewall On CentOS 5.1

      CVE-2008-5726 (stormboards)

      Slackware update for mozilla-thunderbird

      "Milliard"">[FR] Translation Problem "Billion" -> "Milliard"

 

Pixel