CVE-2010-4237
29.10.2019, 19:15
Mercurial before 1.6.4 fails to verify the Common Name field of SSL certificates which allows remote attackers who acquire a certificate signed by a Certificate Authority to perform a man-in-the-middle attack.Enginsight
Vendor | Product | Version |
---|---|---|
mercurial | mercurial | 𝑥 < 1.6.4 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References