CVE Vulnerabilities

CVE-2008-2420

Published: May 23, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The OCSP functionality in stunnel before 4.24 does not properly search certificate revocation lists (CRL), which allows remote attackers to bypass intended access restrictions by using revoked certificates.

Affected Software

NameVendorStart VersionEnd Version
StunnelStunnel3.4a (including)3.4a (including)
StunnelStunnel3.5 (including)3.5 (including)
StunnelStunnel3.6 (including)3.6 (including)
StunnelStunnel3.7 (including)3.7 (including)
StunnelStunnel3.8 (including)3.8 (including)
StunnelStunnel3.8p1 (including)3.8p1 (including)
StunnelStunnel3.8p2 (including)3.8p2 (including)
StunnelStunnel3.8p3 (including)3.8p3 (including)
StunnelStunnel3.8p4 (including)3.8p4 (including)
StunnelStunnel3.9 (including)3.9 (including)
StunnelStunnel3.10 (including)3.10 (including)
StunnelStunnel3.11 (including)3.11 (including)
StunnelStunnel3.12 (including)3.12 (including)
StunnelStunnel3.13 (including)3.13 (including)
StunnelStunnel3.14 (including)3.14 (including)
StunnelStunnel3.15 (including)3.15 (including)
StunnelStunnel3.16 (including)3.16 (including)
StunnelStunnel3.17 (including)3.17 (including)
StunnelStunnel3.18 (including)3.18 (including)
StunnelStunnel3.19 (including)3.19 (including)
StunnelStunnel3.20 (including)3.20 (including)
StunnelStunnel3.21 (including)3.21 (including)
StunnelStunnel3.21a (including)3.21a (including)
StunnelStunnel3.21b (including)3.21b (including)
StunnelStunnel3.21c (including)3.21c (including)
StunnelStunnel3.22 (including)3.22 (including)
StunnelStunnel3.23 (including)3.23 (including)
StunnelStunnel3.24 (including)3.24 (including)
StunnelStunnel3.25 (including)3.25 (including)
StunnelStunnel3.26 (including)3.26 (including)
StunnelStunnel4.00 (including)4.00 (including)
StunnelStunnel4.01 (including)4.01 (including)
StunnelStunnel4.02 (including)4.02 (including)
StunnelStunnel4.03 (including)4.03 (including)
StunnelStunnel4.04 (including)4.04 (including)
StunnelStunnel4.05 (including)4.05 (including)
StunnelStunnel4.06 (including)4.06 (including)
StunnelStunnel4.07 (including)4.07 (including)
StunnelStunnel4.08 (including)4.08 (including)
StunnelStunnel4.09 (including)4.09 (including)
StunnelStunnel4.10 (including)4.10 (including)
StunnelStunnel4.11 (including)4.11 (including)
StunnelStunnel4.12 (including)4.12 (including)
StunnelStunnel4.13 (including)4.13 (including)
StunnelStunnel4.14 (including)4.14 (including)
StunnelStunnel4.15 (including)4.15 (including)
StunnelStunnel4.16 (including)4.16 (including)
StunnelStunnel4.17 (including)4.17 (including)
StunnelStunnel4.18 (including)4.18 (including)
StunnelStunnel4.19 (including)4.19 (including)
StunnelStunnel4.20 (including)4.20 (including)
StunnelStunnel4.21 (including)4.21 (including)
StunnelStunnel4.22 (including)4.22 (including)
StunnelStunnel4.23 (including)4.23 (including)
Stunnel4Ubuntudapper*
Stunnel4Ubuntufeisty*
Stunnel4Ubuntugutsy*
Stunnel4Ubuntuhardy*
Stunnel4Ubuntuupstream*

References