CVE Vulnerabilities

CVE-2010-1194

Published: Mar 31, 2010 | Modified: May 22, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The match_component function in smtp-tls.c in libESMTP 1.0.3.r1, and possibly other versions including 1.0.4, treats two strings as equal if one is a substring of the other, which allows remote attackers to spoof trusted certificates via a crafted subjectAltName.

Affected Software

Name Vendor Start Version End Version
Libesmtp Stafford.uklinux 0.6 0.6
Libesmtp Stafford.uklinux 0.2 0.2
Libesmtp Stafford.uklinux 0.7.1 0.7.1
Libesmtp Stafford.uklinux 0.8.3 0.8.3
Libesmtp Stafford.uklinux 0.8.0 0.8.0
Libesmtp Stafford.uklinux 1.0.1 1.0.1
Libesmtp Stafford.uklinux 0.1 0.1
Libesmtp Stafford.uklinux 0.8.9 0.8.9
Libesmtp Stafford.uklinux 0.5 0.5
Libesmtp Stafford.uklinux 0.8.6 0.8.6
Libesmtp Stafford.uklinux 1.0.3 1.0.3
Libesmtp Stafford.uklinux 0.8.10 0.8.10
Libesmtp Stafford.uklinux 0.6.1 0.6.1
Libesmtp Stafford.uklinux 1.0.3 1.0.3
Libesmtp Stafford.uklinux 0.8.4 0.8.4
Libesmtp Stafford.uklinux 0.3 0.3
Libesmtp Stafford.uklinux 1.0 1.0
Libesmtp Stafford.uklinux 1.0 1.0
Libesmtp Stafford.uklinux 0.6 0.6
Libesmtp Stafford.uklinux 0.7.0 0.7.0
Libesmtp Stafford.uklinux 0.8.5 0.8.5
Libesmtp Stafford.uklinux 0.4 0.4
Libesmtp Stafford.uklinux 0.8.8 0.8.8
Libesmtp Stafford.uklinux 1.0.2 1.0.2
Libesmtp Stafford.uklinux 0.8.10 0.8.10
Libesmtp Stafford.uklinux 0.8.12 0.8.12
Libesmtp Stafford.uklinux 0.8.1 0.8.1
Libesmtp Stafford.uklinux 0.8.2 0.8.2
Libesmtp Stafford.uklinux 0.8.7 0.8.7
Libesmtp Stafford.uklinux 0.8.11 0.8.11
Libesmtp Stafford.uklinux 1.0.4 1.0.4
Libesmtp Stafford.uklinux 0.1 0.1

References