CVE-2010-2074

istream.c in w3m 0.5.2 and possibly other versions, when ssl_verify_server is enabled, does not properly handle a '\0' character in a domain name in the (1) subject's Common Name or (2) Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 82%
VendorProductVersion
w3mw3m
0.5.2
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
w3m
bullseye
0.5.3+git20210102-6+deb11u1
fixed
sid
0.5.3+git20230121-2
fixed
trixie
0.5.3+git20230121-2
fixed
bookworm
0.5.3+git20230121-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
w3m
lucid
Fixed 0.5.2-2.1ubuntu1.1
released
karmic
Fixed 0.5.2-2ubuntu1.1
released
jaunty
Fixed 0.5.2-2ubuntu0.1
released
hardy
Fixed 0.5.1-5.1ubuntu1.1
released
dapper
Fixed 0.5.1-4ubuntu2.6.06.1
released