Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-4318
HistoryNov 18, 2011 - 12:00 a.m.

CVE-2011-4318

2011-11-1800:00:00
ubuntu.com
ubuntu.com
9

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

EPSS

0.003

Percentile

68.2%

Dovecot 2.0.x before 2.0.16, when ssl or starttls is enabled and hostname
is used to define the proxy destination, does not verify that the server
hostname matches a domain name in the subject’s Common Name (CN) of the
X.509 certificate, which allows man-in-the-middle attackers to spoof SSL
servers via a valid certificate for a different hostname.

Bugs

Notes

Author Note
jdstrand SSL proxy connections were added in some Dovecot v1.x versions, but but v1.x doesn’t support giving hostname as proxy destination, only IP address. (per upstream)
OSVersionArchitecturePackageVersionFilename
ubuntu11.10noarchdovecot< 1:2.0.13-1ubuntu3.2UNKNOWN

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

EPSS

0.003

Percentile

68.2%