CVE-2012-5524

EPSS 0.20%
Published: 2/8/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2012-5524

Description

The _ssl_verify_callback function in tls_nb.py in Gajim before 0.15.3 does not properly verify SSL certificates, which allows remote attackers to conduct man-in-the-middle (MITM) attacks and spoof servers via an arbitrary certificate from a trusted CA.

Affected packages (1)

References (1)