CVE Vulnerabilities

CVE-2004-2761

Published: Jan 05, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The MD5 Message-Digest Algorithm is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of MD5 in the signature algorithm of an X.509 certificate.

Affected Software

NameVendorStart VersionEnd Version
Md5Ietf- (including)- (including)
Red Hat Certificate System 7.3RedHatrhpki-ca-0:7.3.0-21.el4*
Red Hat Certificate System 7.3RedHatrhpki-common-0:7.3.0-41.el4*
Red Hat Certificate System 7.3RedHatrhpki-util-0:7.3.0-21.el4*
Red Hat Certificate System 8RedHatpki-ca-0:8.0.7-1.el5pki*
Red Hat Certificate System 8RedHatpki-common-0:8.0.6-2.el5pki*
Red Hat Certificate System 8RedHatpki-util-0:8.0.5-1.el5pki*
FirefoxUbuntudapper*
NssUbuntugutsy*
NssUbuntuhardy*
NssUbuntuintrepid*

References