CVE-2012-5821
04.11.2012, 22:55
Lynx does not verify that the server's certificate is signed by a trusted certification authority, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate, related to improper use of a certain GnuTLS function.Enginsight
| Vendor | Product | Version |
|---|---|---|
| lynx | lynx | - |
| canonical | ubuntu_linux | 10.04 |
| canonical | ubuntu_linux | 11.10 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 12.10 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References