|
|
| |
|
| |
curl: insufficient verification methods
| Package(s): | curl |
CVE #(s): | CVE-2007-3564
|
| Created: | July 17, 2007 |
Updated: | July 19, 2007 |
| Description: |
The GnuTLS certificate verification methods implemented in Curl did not
check for expiration and activation dates. When performing validations,
tools using libcurl3-gnutls would incorrectly allow connections to sites
using expired certificates. |
| Alerts: |
|
( Log in to post comments)
|
|
|