CVE-2007-6746
published 2013-05-21CVE-2007-6746: telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA, (2) that the server hostname matches a domain name in the subject's Common…
PriorityP425medium5.8CVSS 2.0
AVNACMAuNCPIPAN
EPSS
0.95%
57.8th percentile
telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA, (2) that the server hostname matches a domain name in the subject's Common Name (CN), or (3) the expiration date of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | telepathy-idle | <= 0.1.14.1 | — |
| canonical | telepathy-idle | — | — |
| canonical | telepathy-idle | — | — |
| canonical | telepathy-idle | — | — |
| canonical | telepathy-idle | — | — |
| canonical | telepathy-idle | — | — |
| canonical | telepathy-idle | >= 0 < 0.1.15-1 | 0.1.15-1 |
| canonical | telepathy-idle | >= 0 < 0.1.15-1 | 0.1.15-1 |
| canonical | telepathy-idle | >= 0 < 0.1.15-1 | 0.1.15-1 |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | telepathy-idle | < telepathy-idle 0.1.15-1 (bookworm) | telepathy-idle 0.1.15-1 (bookworm) |
CVSS provenance
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
osv5.8MEDIUM
vendor_debian5.8LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
telepathy-idle vulnerability
vendor_ubuntu·2013-05-09
CVE-2007-6746 telepathy-idle vulnerability
Title: telepathy-idle vulnerability
Summary: telepathy-idle could be made to expose sensitive information over the
network.
It was discovered that telepathy-idle did not perform any server
certificate validation when using SSL connections. If a remote attacker
were able to perform a machine-in-the-middle attack, this flaw could be
exploited to alter or compromise confidential information.
Instructions: After a standard system update you need to restart your session to make all
the necessary changes.
Debian
CVE-2007-6746: telepathy-idle - telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA...
vendor_debian·2007·CVSS 5.8
CVE-2007-6746 [MEDIUM] CVE-2007-6746: telepathy-idle - telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA...
telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA, (2) that the server hostname matches a domain name in the subject's Common Name (CN), or (3) the expiration date of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
Scope: local
bookworm: resolved (fixed in 0.1.15-1)
bullseye: resolved (fixed in 0.1.15-1)
sid: resolved (fixed in 0.1.15-1)
trixie: resolved (fixed in 0.1.15-1)
GHSA
GHSA-j9qv-wv66-7c38: telepathy-idle before 0
ghsa_unreviewed·2022-05-01
CVE-2007-6746 [MEDIUM] CWE-20 GHSA-j9qv-wv66-7c38: telepathy-idle before 0
telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA, (2) that the server hostname matches a domain name in the subject's Common Name (CN), or (3) the expiration date of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
OSV
CVE-2007-6746: telepathy-idle before 0
osv·2013-05-21·CVSS 5.8
CVE-2007-6746 [MEDIUM] CVE-2007-6746: telepathy-idle before 0
telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA, (2) that the server hostname matches a domain name in the subject's Common Name (CN), or (3) the expiration date of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2007-6746 telepathy-idle: does not properly validate SSL certificates
bugzilla·2013-04-24·CVSS 5.8
CVE-2007-6746 [MEDIUM] CVE-2007-6746 telepathy-idle: does not properly validate SSL certificates
CVE-2007-6746 telepathy-idle: does not properly validate SSL certificates
It was reported [1],[2] that telepathy-idle, an IRC backend for the Telepathy framework, did not check the server's SSL/TLS certificate for validity [3]. This could allow an attacker to carry out man-in-the-middle attacks.
This flaw has existed in the source since 2007, and versions 0.1.11 through to 0.1.14 use GLib for TLS, so they did very basic checks on certificates, but did not check that the certificate issuer was a trusted CA, that the identity matched the server's hostname, or that the certificate had not expired.
The forthcoming 0.1.15 release will fix this flaw; a patch is attached to the upstream bug [4].
[1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706094
[2] http://www.openwall.com/lists/oss
Bugzilla
CVE-2007-6746 telepathy-idle: does not properly validate SSL certificates [fedora-all]
bugzilla·2013-04-24·CVSS 5.8
CVE-2007-6746 [MEDIUM] CVE-2007-6746 telepathy-idle: does not properly validate SSL certificates [fedora-all]
CVE-2007-6746 telepathy-idle: does not properly validate SSL certificates [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/104397.htmlhttp://lists.opensuse.org/opensuse-updates/2013-06/msg00052.htmlhttp://secunia.com/advisories/53361http://www.openwall.com/lists/oss-security/2013/04/24/5http://www.securityfocus.com/bid/59474http://www.ubuntu.com/usn/USN-1821-1https://bugs.freedesktop.org/show_bug.cgi?id=63810http://lists.fedoraproject.org/pipermail/package-announce/2013-May/104397.htmlhttp://lists.opensuse.org/opensuse-updates/2013-06/msg00052.htmlhttp://secunia.com/advisories/53361http://www.openwall.com/lists/oss-security/2013/04/24/5http://www.securityfocus.com/bid/59474http://www.ubuntu.com/usn/USN-1821-1https://bugs.freedesktop.org/show_bug.cgi?id=63810
2013-05-21
Published