Lucene search

K
cvelistMitreCVELIST:CVE-2016-20011
HistoryMay 25, 2021 - 8:09 p.m.

CVE-2016-20011

2021-05-2520:09:43
mitre
www.cve.org
8
libgrss
tls certificate
verification
vulnerability
soupsessionsync

AI Score

6.4

Confidence

High

EPSS

0.003

Percentile

70.2%

libgrss through 0.7.0 fails to perform TLS certificate verification when downloading feeds, allowing remote attackers to manipulate the contents of feeds without detection. This occurs because of the default behavior of SoupSessionSync.

AI Score

6.4

Confidence

High

EPSS

0.003

Percentile

70.2%