Lucene search

K
freebsdFreeBSD708C65A5-7C58-11DE-A994-0030843D3802
HistoryJul 15, 2009 - 12:00 a.m.

mono -- XML signature HMAC truncation spoofing

2009-07-1500:00:00
vuxml.freebsd.org
25

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

EPSS

0.973

Percentile

99.9%

Secunia reports:

A security issue has been reported in Mono, which can be
exploited by malicious people to conduct spoofing attacks.
The security issue is caused due to an error when processing
certain XML signatures.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchmono< 2.4.2.2UNKNOWN

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

EPSS

0.973

Percentile

99.9%