CVE-2013-1799

Gnome Online Accounts (GOA) 3.6.x before 3.6.3 and 3.7.x before 3.7.91, does not properly validate SSL certificates when creating accounts for providers who use the libsoup library, which allows man-in-the-middle attackers to obtain sensitive information such as credentials by sniffing the network. NOTE: this issue exists because of an incomplete fix for CVE-2013-0240.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gnome:gnome_online_accounts:3.6.0:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gnome_online_accounts:3.6.2:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gnome_online_accounts:3.6.1:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:gnome:gnome_online_accounts:3.7.3:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gnome_online_accounts:3.7.4:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gnome_online_accounts:3.7.90:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gnome_online_accounts:3.7.2:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gnome_online_accounts:3.7.1:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:11.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:12.04:-:lts:*:*:*:*:*

Information

Published : 2013-04-01 20:23

Updated : 2023-02-12 20:41


NVD link : CVE-2013-1799

Mitre link : CVE-2013-1799


JSON object : View

CWE
CWE-310

Cryptographic Issues

Advertisement

dedicated server usa

Products Affected

canonical

  • ubuntu_linux

gnome

  • gnome_online_accounts