CVE-2011-1094
published 2011-03-16CVE-2011-1094: kio/kio/tcpslavebase.cpp in KDE KSSL in kdelibs before 4.6.1 does not properly verify that the server hostname matches the domain name of the subject of an…
PriorityP422medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.00%
58.9th percentile
kio/kio/tcpslavebase.cpp in KDE KSSL in kdelibs before 4.6.1 does not properly verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a certificate issued by a legitimate Certification Authority for an IP address, a different vulnerability than CVE-2009-2702.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | kdelibs | <= 4.6 | — |
| redhat | kdelibs | — | — |
| redhat | kdelibs | — | — |
| redhat | kdelibs | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9793-cggf-824w: kio/kio/tcpslavebase
ghsa_unreviewed·2022-05-17·CVSS 7.5
CVE-2011-1094 [HIGH] CWE-20 GHSA-9793-cggf-824w: kio/kio/tcpslavebase
kio/kio/tcpslavebase.cpp in KDE KSSL in kdelibs before 4.6.1 does not properly verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a certificate issued by a legitimate Certification Authority for an IP address, a different vulnerability than CVE-2009-2702.
OSV
CVE-2011-1094: kio/kio/tcpslavebase
osv·2011-03-16·CVSS 7.5
CVE-2011-1094 [HIGH] CVE-2011-1094: kio/kio/tcpslavebase
kio/kio/tcpslavebase.cpp in KDE KSSL in kdelibs before 4.6.1 does not properly verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a certificate issued by a legitimate Certification Authority for an IP address, a different vulnerability than CVE-2009-2702.
Ubuntu
KDE-Libs vulnerabilities
vendor_ubuntu·2011-04-14·CVSS 4.3
CVE-2011-1094 [MEDIUM] KDE-Libs vulnerabilities
Title: KDE-Libs vulnerabilities
Summary: An attacker could send crafted input to Konqueror to view sensitive
information.
It was discovered that KDE KSSL did not properly verify X.509 certificates
when the certificate was issued for an IP address. An attacker could
exploit this to perform a machine-in-the-middle attack to view sensitive
information or alter encrypted communications. (CVE-2011-1094)
Tim Brown discovered that KDE KHTML did not properly escape URLs from
externally generated error pages. An attacker could expoit this to conduct
cross-site scripting attacks. With cross-site scripting vulnerabilities, if
a user were tricked into viewing server output during a crafted server
request, a remote attacker could exploit this to modify the contents, or
steal confidential data (such
Red Hat
kdelibs: SSL certificate for IP address accepted as valid for hosts that resolve to the IP
vendor_redhat·2011-01-31·CVSS 7.5
CVE-2011-1094 [HIGH] kdelibs: SSL certificate for IP address accepted as valid for hosts that resolve to the IP
kdelibs: SSL certificate for IP address accepted as valid for hosts that resolve to the IP
kio/kio/tcpslavebase.cpp in KDE KSSL in kdelibs before 4.6.1 does not properly verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a certificate issued by a legitimate Certification Authority for an IP address, a different vulnerability than CVE-2009-2702.
No detection rules found.
No public exploits indexed.
http://openwall.com/lists/oss-security/2011/03/08/13http://openwall.com/lists/oss-security/2011/03/08/20http://secunia.com/advisories/44108http://www.mandriva.com/security/advisories?name=MDVSA-2011:071http://www.securityfocus.com/bid/46789http://www.ubuntu.com/usn/USN-1110-1http://www.vupen.com/english/advisories/2011/0913http://www.vupen.com/english/advisories/2011/0990https://exchange.xforce.ibmcloud.com/vulnerabilities/65986https://projects.kde.org/projects/kde/kdelibs/repository/revisions/76f935197599a335a5fe09b78751ddb455248cf7http://openwall.com/lists/oss-security/2011/03/08/13http://openwall.com/lists/oss-security/2011/03/08/20http://secunia.com/advisories/44108http://www.mandriva.com/security/advisories?name=MDVSA-2011:071http://www.securityfocus.com/bid/46789http://www.ubuntu.com/usn/USN-1110-1http://www.vupen.com/english/advisories/2011/0913http://www.vupen.com/english/advisories/2011/0990https://exchange.xforce.ibmcloud.com/vulnerabilities/65986https://projects.kde.org/projects/kde/kdelibs/repository/revisions/76f935197599a335a5fe09b78751ddb455248cf7
2011-03-16
Published