Vulnerability CVE-2005-2700


Published: 2005-09-06   Modified: 2012-02-12

Description:
ssl_engine_kernel.c in mod_ssl before 2.8.24, when using "SSLVerifyClient optional" in the global virtual host configuration, does not properly enforce "SSLVerifyClient require" in a per-location context, which allows remote attackers to bypass intended access restrictions.

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete
Affected software
Redhat -> Enterprise linux 
Redhat -> Enterprise linux desktop 
Mod ssl -> Mod ssl 
Apache -> Http server 

 References:
http://lists.trustix.org/pipermail/tsl-announce/2005-October/000354.html
http://marc.info/?l=apache-modssl&m=112569517603897&w=2
http://marc.info/?l=bugtraq&m=112604765028607&w=2
http://marc.info/?l=bugtraq&m=112870296926652&w=2
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10416
http://people.apache.org/~jorton/CAN-2005-2700.diff
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102197-1
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102198-1
http://support.avaya.com/elmodocs2/security/ASA-2006-081.htm
http://www.debian.org/security/2005/dsa-805
http://www.debian.org/security/2005/dsa-807
http://www.gentoo.org/security/en/glsa/glsa-200509-12.xml
http://www.kb.cert.org/vuls/id/744929
http://www.mandriva.com/security/advisories?name=MDKSA-2005:161
http://www.novell.com/linux/security/advisories/2005_51_apache2.html
http://www.novell.com/linux/security/advisories/2005_52_apache2.html
http://www.redhat.com/support/errata/RHSA-2005-608.html
http://www.redhat.com/support/errata/RHSA-2005-773.html
http://www.redhat.com/support/errata/RHSA-2005-816.html
http://www.securityfocus.com/bid/14721
http://www.ubuntu.com/usn/usn-177-1
http://www.vupen.com/english/advisories/2005/1625
http://www.vupen.com/english/advisories/2005/2659
http://www.vupen.com/english/advisories/2006/0789
http://www.vupen.com/english/advisories/2006/4207
http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=3117
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=167195
https://lists.opensuse.org/opensuse-security-announce/2006-09/msg00016.html

Copyright 2024, cxsecurity.com

 

Back to Top