PT-2011-2072 · Mozilla · Firefox

Vincent Danen

·

Publicado

2011-06-06

·

Atualizado

2017-09-19

·

CVE-2011-0082

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions 4.0.x through 4.0.1
Description The issue is related to the X.509 certificate validation functionality, which does not properly implement single-session security exceptions. This might make it easier for remote attackers to spoof an SSL server via an untrusted certificate, potentially leading to local caching of documents from that server.
Recommendations For Mozilla Firefox versions 4.0.x through 4.0.1, update to a version that properly implements single-session security exceptions to resolve the issue.

Exploit

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2011-0082

Produtos afetados

Firefox