Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-1799
Description:Gnome Online Accounts (GOA) 3.6.x before 3.6.3 and 3.7.x before 3.7.91, does not properly validate SSL certificates when creating accounts for providers who use the libsoup library, which allows man- in-the-middle attackers to obtain sensitive information such as credentials by sniffing the network. NOTE: this issue exists because of an incomplete fix for CVE-2013-0240.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-1799
51976
http://secunia.com/advisories/51976
52791
http://secunia.com/advisories/52791
USN-1779-1
http://ubuntu.com/usn/usn-1779-1
[gnome-announce-list] 20130304 GNOME Online Accounts 3.6.3 released
https://mail.gnome.org/archives/gnome-announce-list/2013-March/msg00007.html
[gnome-announce-list] 20130305 GNOME Online Accounts 3.7.91 released
https://mail.gnome.org/archives/gnome-announce-list/2013-March/msg00020.html
https://bugzilla.gnome.org/show_bug.cgi?id=693214
https://bugzilla.gnome.org/show_bug.cgi?id=693214
https://bugzilla.gnome.org/show_bug.cgi?id=695106
https://bugzilla.gnome.org/show_bug.cgi?id=695106
https://git.gnome.org/browse/gnome-online-accounts/commit/?id=9cf4bc0ced2c53bcdd36922caa65afc8a167bbd8
https://git.gnome.org/browse/gnome-online-accounts/commit/?id=9cf4bc0ced2c53bcdd36922caa65afc8a167bbd8
openSUSE-SU-2013:0301
http://lists.opensuse.org/opensuse-updates/2013-02/msg00046.html




© 1998-2025 E-Soft Inc. All rights reserved.