vdsm and vdsclient does not validate certficate hostname from another vdsm which could facilitate a man-in-the-middle attack
References
Link | Resource |
---|---|
https://access.redhat.com/security/cve/cve-2014-8167 | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-8167 | Issue Tracking Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2019-11-13T16:11:46
Updated: 2019-11-13T16:11:45
Reserved: 2014-10-10T00:00:00
Link: CVE-2014-8167
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-11-13T17:15:13.617
Modified: 2019-11-15T16:10:40.130
Link: CVE-2014-8167
JSON object: View
Redhat Information
No data.
CWE