Linux

USN-8907-1: libgit2 vulnerability

It was discovered that libgit2 incorrectly handled IP address SubjectAltName verification in TLS certificate validation. A remote attacker with a CA-trusted certificate could possibly use this issue to perform a machine-in-the-middle attack, leading to the exposure of sensitive information.

Quelle: Originalartikel öffnen

AI Assistant
Context loaded: USN-8907-1: libgit2 vulnerability