Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-20011

libgrss through 0.7.0 fails to perform TLS certificate verification when downloading feeds, allowing remote attackers to manipulate the contents of feeds without detection. This occurs because of the default behavior of SoupSessionSync.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.4%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2016-20011
  • Gnome » Libgrss » Version: 0.3
    cpe:2.3:a:gnome:libgrss:0.3
  • Gnome » Libgrss » Version: 0.4
    cpe:2.3:a:gnome:libgrss:0.4
  • Gnome » Libgrss » Version: 0.5
    cpe:2.3:a:gnome:libgrss:0.5
  • Gnome » Libgrss » Version: 0.6
    cpe:2.3:a:gnome:libgrss:0.6
  • Gnome » Libgrss » Version: 0.7.0
    cpe:2.3:a:gnome:libgrss:0.7.0


Contact Us

Shodan ® - All rights reserved