CVE Vulnerabilities

CVE-2009-1417

Published: Apr 30, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

gnutls-cli in GnuTLS before 2.6.6 does not verify the activation and expiration times of X.509 certificates, which allows remote attackers to successfully present a certificate that is (1) not yet valid or (2) no longer valid, related to lack of time checks in the _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls_x509, as used by (a) Exim, (b) OpenLDAP, and (c) libsoup.

Affected Software

NameVendorStart VersionEnd Version
GnutlsGnu*2.6.5 (including)
GnutlsGnu1.0.16 (including)1.0.16 (including)
GnutlsGnu1.0.17 (including)1.0.17 (including)
GnutlsGnu1.0.18 (including)1.0.18 (including)
GnutlsGnu1.0.19 (including)1.0.19 (including)
GnutlsGnu1.0.20 (including)1.0.20 (including)
GnutlsGnu1.0.21 (including)1.0.21 (including)
GnutlsGnu1.0.22 (including)1.0.22 (including)
GnutlsGnu1.0.23 (including)1.0.23 (including)
GnutlsGnu1.0.24 (including)1.0.24 (including)
GnutlsGnu1.0.25 (including)1.0.25 (including)
GnutlsGnu1.1.13 (including)1.1.13 (including)
GnutlsGnu1.1.14 (including)1.1.14 (including)
GnutlsGnu1.1.15 (including)1.1.15 (including)
GnutlsGnu1.1.16 (including)1.1.16 (including)
GnutlsGnu1.1.17 (including)1.1.17 (including)
GnutlsGnu1.1.18 (including)1.1.18 (including)
GnutlsGnu1.1.19 (including)1.1.19 (including)
GnutlsGnu1.1.20 (including)1.1.20 (including)
GnutlsGnu1.1.21 (including)1.1.21 (including)
GnutlsGnu1.1.22 (including)1.1.22 (including)
GnutlsGnu1.1.23 (including)1.1.23 (including)
GnutlsGnu1.2.0 (including)1.2.0 (including)
GnutlsGnu1.2.1 (including)1.2.1 (including)
GnutlsGnu1.2.2 (including)1.2.2 (including)
GnutlsGnu1.2.3 (including)1.2.3 (including)
GnutlsGnu1.2.4 (including)1.2.4 (including)
GnutlsGnu1.2.5 (including)1.2.5 (including)
GnutlsGnu1.2.6 (including)1.2.6 (including)
GnutlsGnu1.2.7 (including)1.2.7 (including)
GnutlsGnu1.2.8 (including)1.2.8 (including)
GnutlsGnu1.2.8.1a1 (including)1.2.8.1a1 (including)
GnutlsGnu1.2.9 (including)1.2.9 (including)
GnutlsGnu1.2.10 (including)1.2.10 (including)
GnutlsGnu1.2.11 (including)1.2.11 (including)
GnutlsGnu1.3.0 (including)1.3.0 (including)
GnutlsGnu1.3.1 (including)1.3.1 (including)
GnutlsGnu1.3.2 (including)1.3.2 (including)
GnutlsGnu1.3.3 (including)1.3.3 (including)
GnutlsGnu1.3.4 (including)1.3.4 (including)
GnutlsGnu1.3.5 (including)1.3.5 (including)
GnutlsGnu1.4.0 (including)1.4.0 (including)
GnutlsGnu1.4.1 (including)1.4.1 (including)
GnutlsGnu1.4.2 (including)1.4.2 (including)
GnutlsGnu1.4.3 (including)1.4.3 (including)
GnutlsGnu1.4.4 (including)1.4.4 (including)
GnutlsGnu1.4.5 (including)1.4.5 (including)
GnutlsGnu1.5.0 (including)1.5.0 (including)
GnutlsGnu1.5.1 (including)1.5.1 (including)
GnutlsGnu1.5.2 (including)1.5.2 (including)
GnutlsGnu1.5.3 (including)1.5.3 (including)
GnutlsGnu1.5.4 (including)1.5.4 (including)
GnutlsGnu1.5.5 (including)1.5.5 (including)
GnutlsGnu1.6.0 (including)1.6.0 (including)
GnutlsGnu1.6.1 (including)1.6.1 (including)
GnutlsGnu1.6.2 (including)1.6.2 (including)
GnutlsGnu1.6.3 (including)1.6.3 (including)
GnutlsGnu1.7.0 (including)1.7.0 (including)
GnutlsGnu1.7.1 (including)1.7.1 (including)
GnutlsGnu1.7.2 (including)1.7.2 (including)
GnutlsGnu1.7.3 (including)1.7.3 (including)
GnutlsGnu1.7.4 (including)1.7.4 (including)
GnutlsGnu1.7.5 (including)1.7.5 (including)
GnutlsGnu1.7.6 (including)1.7.6 (including)
GnutlsGnu1.7.7 (including)1.7.7 (including)
GnutlsGnu1.7.8 (including)1.7.8 (including)
GnutlsGnu1.7.9 (including)1.7.9 (including)
GnutlsGnu1.7.10 (including)1.7.10 (including)
GnutlsGnu1.7.11 (including)1.7.11 (including)
GnutlsGnu1.7.12 (including)1.7.12 (including)
GnutlsGnu1.7.13 (including)1.7.13 (including)
GnutlsGnu1.7.14 (including)1.7.14 (including)
GnutlsGnu1.7.15 (including)1.7.15 (including)
GnutlsGnu1.7.16 (including)1.7.16 (including)
GnutlsGnu1.7.17 (including)1.7.17 (including)
GnutlsGnu1.7.18 (including)1.7.18 (including)
GnutlsGnu1.7.19 (including)1.7.19 (including)
GnutlsGnu2.0.0 (including)2.0.0 (including)
GnutlsGnu2.0.1 (including)2.0.1 (including)
GnutlsGnu2.0.2 (including)2.0.2 (including)
GnutlsGnu2.0.3 (including)2.0.3 (including)
GnutlsGnu2.0.4 (including)2.0.4 (including)
GnutlsGnu2.1.0 (including)2.1.0 (including)
GnutlsGnu2.1.1 (including)2.1.1 (including)
GnutlsGnu2.1.2 (including)2.1.2 (including)
GnutlsGnu2.1.3 (including)2.1.3 (including)
GnutlsGnu2.1.4 (including)2.1.4 (including)
GnutlsGnu2.1.5 (including)2.1.5 (including)
GnutlsGnu2.1.6 (including)2.1.6 (including)
GnutlsGnu2.1.7 (including)2.1.7 (including)
GnutlsGnu2.1.8 (including)2.1.8 (including)
GnutlsGnu2.2.0 (including)2.2.0 (including)
GnutlsGnu2.2.1 (including)2.2.1 (including)
GnutlsGnu2.2.2 (including)2.2.2 (including)
GnutlsGnu2.2.3 (including)2.2.3 (including)
GnutlsGnu2.2.4 (including)2.2.4 (including)
GnutlsGnu2.2.5 (including)2.2.5 (including)
GnutlsGnu2.3.0 (including)2.3.0 (including)
GnutlsGnu2.3.1 (including)2.3.1 (including)
GnutlsGnu2.3.2 (including)2.3.2 (including)
GnutlsGnu2.3.3 (including)2.3.3 (including)
GnutlsGnu2.3.4 (including)2.3.4 (including)
GnutlsGnu2.3.5 (including)2.3.5 (including)
GnutlsGnu2.3.6 (including)2.3.6 (including)
GnutlsGnu2.3.7 (including)2.3.7 (including)
GnutlsGnu2.3.8 (including)2.3.8 (including)
GnutlsGnu2.3.9 (including)2.3.9 (including)
GnutlsGnu2.3.10 (including)2.3.10 (including)
GnutlsGnu2.3.11 (including)2.3.11 (including)
GnutlsGnu2.4.0 (including)2.4.0 (including)
GnutlsGnu2.4.1 (including)2.4.1 (including)
GnutlsGnu2.4.2 (including)2.4.2 (including)
GnutlsGnu2.6.0 (including)2.6.0 (including)
GnutlsGnu2.6.1 (including)2.6.1 (including)
GnutlsGnu2.6.2 (including)2.6.2 (including)
GnutlsGnu2.6.3 (including)2.6.3 (including)
GnutlsGnu2.6.4 (including)2.6.4 (including)
Gnutls11Ubuntudapper*
Gnutls12Ubuntudapper*
Gnutls13Ubuntuhardy*
Gnutls26Ubuntuintrepid*
Gnutls26Ubuntujaunty*
Gnutls26Ubuntuupstream*

References