PT-2009-5378 · Opera · Opera
Published
2009-09-02
·
Updated
2024-02-09
·
CVE-2009-3046
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions:
Opera versions prior to 10.00
Description:
The issue arises from the failure to check all intermediate X.509 certificates for revocation, making it easier for remote SSL servers to bypass validation of the certificate chain via a revoked certificate.
Recommendations:
For Opera versions prior to 10.00, update to version 10.00 or later to resolve the issue.
Fix
Improper Certificate Validation
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Opera