Geary before 0.6.3 does not present the user with a warning when a TLS certificate error is detected, which makes it easier for remote attackers to conduct man-in-the-middle attacks via a crafted certificate.
References
Configurations
Information
Published : 2014-09-30 07:55
Updated : 2014-10-01 17:19
NVD link : CVE-2014-5444
Mitre link : CVE-2014-5444
JSON object : View
CWE
CWE-310
Cryptographic Issues
Products Affected
yorba
- geary