Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-4028
HistoryNov 30, 2009 - 12:00 a.m.

CVE-2009-4028

2009-11-3000:00:00
ubuntu.com
ubuntu.com
25

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

76.8%

The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x before
5.0.88 and 5.1.x before 5.1.41, when OpenSSL is used, accepts a value of
zero for the depth of X.509 certificates, which allows man-in-the-middle
attackers to spoof arbitrary SSL-based MySQL servers via a crafted
certificate, as demonstrated by a certificate presented by a server linked
against the yaSSL library.

Bugs

Notes

Author Note
mdeslaur dapper doesnโ€™t build with ssl hardy+ builds with yaSSL none of our releases are vulnerable, as the yaSSL code ignores the verify callback (see mysql bug)

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

76.8%