PT-2015-6252 · Stunnel+2 · Stunnel+2

Johan Olofsson

+1

·

Publicado

2015-05-14

·

Atualizado

2024-06-15

·

CVE-2015-3644

CVSS v2.0

5.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Stunnel versions 5.00 through 5.13
Description The issue allows remote attackers to bypass authentication due to a failure in redirecting client connections to the expected server after the initial connection when the redirect option is used.
Recommendations For versions 5.00 through 5.13, update to a version that contains a fix for this issue to prevent authentication bypass.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2018-2391
CVE-2015-3644
DSA-3299-1
MGASA-2015-0289
OPENSUSE-SU-2024:12196-1
SUSE-SU-2015:1062-1
SUSE-SU-2015_1062-1

Produtos afetados

Alt Linux
Stunnel
Suse