Lucene search

K
prionPRIOn knowledge basePRION:CVE-2012-0867
HistoryJul 18, 2012 - 11:55 p.m.

Code injection

2012-07-1823:55:00
PRIOn knowledge base
www.prio-n.com
1

6.9 Medium

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

75.9%

PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof connections when the host name is exactly 32 characters.