CVE-2013-4366
30.10.2017, 19:29
http/impl/client/HttpClientBuilder.java in Apache HttpClient 4.3.x before 4.3.1 does not ensure that X509HostnameVerifier is not null, which allows attackers to have unspecified impact via vectors involving hostname verification.Enginsight
Vendor | Product | Version |
---|---|---|
apache | httpclient | 4.3 |
apache | httpclient | 4.3:alpha1 |
apache | httpclient | 4.3:beta1 |
apache | httpclient | 4.3:beta2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration