CVE-2020-24619
22.09.2020, 12:15
In mainwindow.cpp in Shotcut before 20.09.13, the upgrade check misuses TLS because of setPeerVerifyMode(QSslSocket::VerifyNone). A man-in-the-middle attacker could offer a spoofed download resource.Enginsight
Vendor | Product | Version |
---|---|---|
meltytech | shotcut | 𝑥 < 20.09.13 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration