CVE-2010-4334
Publication date 14 January 2011
Last updated 24 July 2024
Ubuntu priority
The IO::Socket::SSL module 1.35 for Perl, when verify_mode is not VERIFY_NONE, fails open to VERIFY_NONE instead of throwing an error when a ca_file/ca_path cannot be verified, which allows remote attackers to bypass intended certificate restrictions.
Status
Package | Ubuntu Release | Status |
---|---|---|
libio-socket-ssl-perl | ||