6.8
CVE-2010-1194
- EPSS 0.4%
- Veröffentlicht 31.03.2010 18:00:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle security@ubuntu.com
- CVE-Watchlists
- Unerledigt
The match_component function in smtp-tls.c in libESMTP 1.0.3.r1, and possibly other versions including 1.0.4, treats two strings as equal if one is a substring of the other, which allows remote attackers to spoof trusted certificates via a crafted subjectAltName.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Stafford.Uklinux ≫ Libesmtp Version0.1 Update-
Stafford.Uklinux ≫ Libesmtp Version0.1 Updatea
Stafford.Uklinux ≫ Libesmtp Version0.2
Stafford.Uklinux ≫ Libesmtp Version0.3
Stafford.Uklinux ≫ Libesmtp Version0.4
Stafford.Uklinux ≫ Libesmtp Version0.5
Stafford.Uklinux ≫ Libesmtp Version0.6
Stafford.Uklinux ≫ Libesmtp Version0.6 Updatea
Stafford.Uklinux ≫ Libesmtp Version0.6.1
Stafford.Uklinux ≫ Libesmtp Version0.7.0
Stafford.Uklinux ≫ Libesmtp Version0.7.1
Stafford.Uklinux ≫ Libesmtp Version0.8.0
Stafford.Uklinux ≫ Libesmtp Version0.8.1
Stafford.Uklinux ≫ Libesmtp Version0.8.2
Stafford.Uklinux ≫ Libesmtp Version0.8.3
Stafford.Uklinux ≫ Libesmtp Version0.8.4
Stafford.Uklinux ≫ Libesmtp Version0.8.5
Stafford.Uklinux ≫ Libesmtp Version0.8.6
Stafford.Uklinux ≫ Libesmtp Version0.8.7
Stafford.Uklinux ≫ Libesmtp Version0.8.8
Stafford.Uklinux ≫ Libesmtp Version0.8.9
Stafford.Uklinux ≫ Libesmtp Version0.8.10
Stafford.Uklinux ≫ Libesmtp Version0.8.10 Updatep1
Stafford.Uklinux ≫ Libesmtp Version0.8.11
Stafford.Uklinux ≫ Libesmtp Version0.8.12
Stafford.Uklinux ≫ Libesmtp Version1.0
Stafford.Uklinux ≫ Libesmtp Version1.0 Updaterc1
Stafford.Uklinux ≫ Libesmtp Version1.0.1
Stafford.Uklinux ≫ Libesmtp Version1.0.2
Stafford.Uklinux ≫ Libesmtp Version1.0.3
Stafford.Uklinux ≫ Libesmtp Version1.0.3 Updater1
Stafford.Uklinux ≫ Libesmtp Version1.0.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.4% | 0.603 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|