Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-3766
Description:mutt_ssl.c in mutt 1.5.16 and other versions before 1.5.19, when OpenSSL is used, does not verify the domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in- the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
Test IDs: 1.3.6.1.4.1.25623.1.0.72034   1.3.6.1.4.1.25623.1.0.831651  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-3766
http://marc.info/?l=oss-security&m=125198917018936&w=2
http://www.openwall.com/lists/oss-security/2009/10/26/1




© 1998-2025 E-Soft Inc. All rights reserved.