Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2011-3150

Overview

Vulnerability Score 6.8 6.8
CVE Id CVE-2011-3150
Last Modified 01 Dec 2011 12:00:00
Published 29 Nov 2011 12:55:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2011-3150

Summary

Software Center in Ubuntu 11.10, 11.04 10.10 does not properly validate server certificates, which allows remote attackers to execute arbitrary code or obtain sensitive information via a man-in-the-middle (MITM) attack.

Vulnerable Systems

Operating System

  • Canonical Ubuntu Linux 10.10

  • Canonical Ubuntu Linux 11.04

  • Canonical Ubuntu Linux 11.10


References

UBUNTU - USN-1270-1

XF - ubuntu-certificate-security-bypass(71430)

BID - 50754

SECUNIA - 46950


Last Updated: 27 May 2016 10:57:14