CVE-2009-2730
published 2009-08-12CVE-2009-2730: libgnutls in GnuTLS before 2.8.2 does not properly handle a '\0' character in a domain name in the subject's (1) Common Name (CN) or (2) Subject Alternative…
PriorityP434high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.15%
80.1th percentile
libgnutls in GnuTLS before 2.8.2 does not properly handle a '\0' character in a domain name in the subject's (1) Common Name (CN) or (2) Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
Affected
126 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gnu | gnutls | <= 2.8.1 | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
| gnu | gnutls | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat7.5HIGH
vendor_ubuntu5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x6gw-c9hx-x25f: libgnutls in GnuTLS before 2
ghsa_unreviewed·2022-05-02
CVE-2009-2730 [HIGH] GHSA-x6gw-c9hx-x25f: libgnutls in GnuTLS before 2
libgnutls in GnuTLS before 2.8.2 does not properly handle a '\0' character in a domain name in the subject's (1) Common Name (CN) or (2) Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
VMware
VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
vendor_vmware·2009-11-20·CVSS 5.0
CVE-2007-2052 [MEDIUM] VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
VMSA-2009-0016: VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
a. JRE Security Update JRE update to version 1.5.0_20, which addresses multiple security issues that existed in earlier releases of JRE. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_18: CVE-2009-1093, CVE-2009-1094, CVE-2009-1095, CVE-2009-1096, CVE-2009-1097, CVE-2009-1098, CVE-2009-1099, CVE-2009-1100, CVE-2009-1101, CVE-2009-1102, CVE-2009-1103, CVE-2009-1104, CVE-2009-1105, CVE-2009-1106, and CVE-2009-1107. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_20: CVE-2009-
Ubuntu
GnuTLS vulnerabilities
vendor_ubuntu·2009-08-19·CVSS 5.9
CVE-2009-2730 [MEDIUM] GnuTLS vulnerabilities
Title: GnuTLS vulnerabilities
Summary: GnuTLS vulnerabilities
Moxie Marlinspike and Dan Kaminsky independently discovered that GnuTLS did
not properly handle certificates with NULL characters in the certificate
name. An attacker could exploit this to perform a machine-in-the-middle attack
to view sensitive information or alter encrypted communications.
(CVE-2009-2730)
Dan Kaminsky discovered GnuTLS would still accept certificates with MD2
hash signatures. As a result, an attacker could potentially create a
malicious trusted certificate to impersonate another site. This issue only
affected Ubuntu 6.06 LTS and Ubuntu 8.10. (CVE-2009-2409)
USN-678-1 fixed a vulnerability and USN-678-2 a regression in GnuTLS. The
upstream patches introduced a regression when validating certain certificate
Red Hat
gnutls: incorrect verification of SSL certificate with NUL in name (GNUTLS-SA-2009-4)
vendor_redhat·2009-08-04·CVSS 7.5
CVE-2009-2730 [HIGH] gnutls: incorrect verification of SSL certificate with NUL in name (GNUTLS-SA-2009-4)
gnutls: incorrect verification of SSL certificate with NUL in name (GNUTLS-SA-2009-4)
libgnutls in GnuTLS before 2.8.2 does not properly handle a '\0' character in a domain name in the subject's (1) Common Name (CN) or (2) Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
No detection rules found.
No public exploits indexed.
http://article.gmane.org/gmane.network.gnutls.general/1733http://lists.opensuse.org/opensuse-security-announce/2009-09/msg00001.htmlhttp://secunia.com/advisories/36266http://secunia.com/advisories/36496http://www.openwall.com/lists/oss-security/2009/08/14/6http://www.redhat.com/support/errata/RHSA-2009-1232.htmlhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securitytracker.com/id?1022777http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/52404https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10778https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8409https://rhn.redhat.com/errata/RHSA-2010-0095.htmlhttp://article.gmane.org/gmane.network.gnutls.general/1733http://lists.opensuse.org/opensuse-security-announce/2009-09/msg00001.htmlhttp://secunia.com/advisories/36266http://secunia.com/advisories/36496http://www.openwall.com/lists/oss-security/2009/08/14/6http://www.redhat.com/support/errata/RHSA-2009-1232.htmlhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securitytracker.com/id?1022777http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/52404https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10778https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8409https://rhn.redhat.com/errata/RHSA-2010-0095.html
2009-08-12
Published