PT-2012-1622 · Google · Google Chrome
Published
2012-03-28
·
Updated
2024-06-15
·
CVE-2011-3061
CVSS v2.0
5.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 18.0.1025.142
Description
The issue is related to the improper checking of X.509 certificates before using a SPDY proxy. This could allow man-in-the-middle attackers to spoof servers or obtain sensitive information via a crafted certificate.
Recommendations
For versions prior to 18.0.1025.142, update to version 18.0.1025.142 or later to resolve the issue.
Exploit
Fix
Improper Certificate Validation
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome