Lucene search

K
cvelistMitreCVELIST:CVE-2009-2973
HistoryAug 27, 2009 - 5:00 p.m.

CVE-2009-2973

2009-08-2717:00:00
mitre
www.cve.org
2

5.9 Medium

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.3%

Google Chrome before 2.0.172.43 does not prevent SSL connections to a site with an X.509 certificate signed with the (1) MD2 or (2) MD4 algorithm, which makes it easier for man-in-the-middle attackers to spoof arbitrary HTTPS servers via a crafted certificate, a related issue to CVE-2009-2409.