CVE Vulnerabilities

CVE-2013-4488

Published: Oct 10, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
5.8 MODERATE
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V3
Ubuntu
LOW

libgadu before 1.12.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers.

Affected Software

Name Vendor Start Version End Version
Libgadu Libgadu * 1.11.4 (including)
Libgadu Ubuntu artful *
Libgadu Ubuntu bionic *
Libgadu Ubuntu cosmic *
Libgadu Ubuntu devel *
Libgadu Ubuntu disco *
Libgadu Ubuntu eoan *
Libgadu Ubuntu esm-apps/bionic *
Libgadu Ubuntu esm-apps/focal *
Libgadu Ubuntu esm-apps/jammy *
Libgadu Ubuntu esm-apps/noble *
Libgadu Ubuntu esm-apps/xenial *
Libgadu Ubuntu focal *
Libgadu Ubuntu groovy *
Libgadu Ubuntu hirsute *
Libgadu Ubuntu impish *
Libgadu Ubuntu jammy *
Libgadu Ubuntu kinetic *
Libgadu Ubuntu lucid *
Libgadu Ubuntu lunar *
Libgadu Ubuntu mantic *
Libgadu Ubuntu noble *
Libgadu Ubuntu oracular *
Libgadu Ubuntu precise *
Libgadu Ubuntu quantal *
Libgadu Ubuntu raring *
Libgadu Ubuntu saucy *
Libgadu Ubuntu trusty *
Libgadu Ubuntu utopic *
Libgadu Ubuntu vivid *
Libgadu Ubuntu wily *
Libgadu Ubuntu xenial *
Libgadu Ubuntu yakkety *
Libgadu Ubuntu zesty *

References