|
|
Log in / Subscribe / Register

gnome-online-accounts: information disclosure

Package(s):gnome-online-accounts CVE #(s):CVE-2013-0240
Created:February 15, 2013 Updated:March 25, 2013
Description:

From the openSUSE bug tracker:

It was found that Gnome Online Accounts (GOA) did not perform SSL certificate validation, when performing Windows Live and Facebook accounts creation. A remote attacker could use this flaw to conduct man-in-the-middle (MiTM) attacks, possibly leading to their ability to obtain sensitive information.

Alerts:
Ubuntu USN-1779-1 gnome-online-accounts 2013-03-25
Fedora FEDORA-2013-3414 gnome-online-accounts 2013-03-19
Fedora FEDORA-2013-2202 gnome-online-accounts 2013-02-27
Mageia MGASA-2013-0059 gnome-online-accounts 2013-02-21
openSUSE openSUSE-SU-2013:0301-1 gnome-online-accounts 2013-02-15

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds