imapsync SSL/TLS Certificate Information Disclosure Vulnerability
BID:65582
Info
imapsync SSL/TLS Certificate Information Disclosure Vulnerability
| Bugtraq ID: | 65582 |
| Class: | Design Error |
| CVE: |
CVE-2014-2014 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 14 2014 12:00AM |
| Updated: | Apr 13 2015 09:45PM |
| Credit: | Dennis Schridde |
| Vulnerable: |
Mandriva Business Server 1 X86 64 Mandriva Business Server 1 imapsync imapsync 1.583 imapsync imapsync 1.580 |
| Not Vulnerable: |
imapsync imapsync 1.584 |
Discussion
imapsync SSL/TLS Certificate Information Disclosure Vulnerability
imapsync is prone to an information-disclosure vulnerability
Attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
Versions prior to imapsync 1.584 are vulnerable.
imapsync is prone to an information-disclosure vulnerability
Attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
Versions prior to imapsync 1.584 are vulnerable.
Solution / Fix
imapsync SSL/TLS Certificate Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Mandriva Business Server 1 X86 64
-
Mandriva imapsync-1.584-1.mbs1.noarch.rpm
http://www.mandriva.com/en/downloads/