CVE-2012-1177
Publication date 19 March 2012
Last updated 24 July 2024
Ubuntu priority
libgdata before 0.10.2 and 0.11.x before 0.11.1 does not validate SSL certificates, which allows remote attackers to obtain user names and passwords via a man-in-the-middle (MITM) attack with a spoofed certificate.
Status
Package | Ubuntu Release | Status |
---|---|---|
evolution-data-server | ||
libgdata | ||
References
Related Ubuntu Security Notices (USN)
- USN-1547-1
- libGData, evolution-data-server vulnerability
- 28 August 2012