|
|
| |
|
| |
ubunutone-couch: certificate validation flaw
| Package(s): | ubuntuone-couch |
CVE #(s): | |
| Created: | March 1, 2012 |
Updated: | March 7, 2012 |
| Description: |
From the Ubuntu advisory:
It was discovered that Ubuntu One Couch did not perform any server
certificate validation when using HTTPS connections. If a remote attacker
were able to perform a man-in-the-middle attack, this flaw could be
exploited to alter or compromise confidential information.
|
| Alerts: |
|
( Log in to post comments)
|
|
|