Logo
vulnerabilityCVE-2012-5825
Name
CVE-2012-5825
Source
NVD ( link)Debian ( link)
Description
Tweepy does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the Python httplib library.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
python3-twitter
Not Affected

Vulnerability Rating#


5.8
CVSSv2

Others affected component#


Name
Project
Project Version
Version
Status
yocto
kirkstone
4.8.0
Not Affected