Vulnerabilities
Vulnerable Software
Gentoo:  >> Portage  >> 2.1.12  Security Vulnerabilities
The urlopen function in pym/portage/util/_urlopen.py in Gentoo Portage 2.1.12, when using HTTPS, does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and modify binary package lists via a crafted certificate.
CVSS Score
9.3
EPSS Score
0.006
Published
2014-09-29


Contact Us

Shodan ® - All rights reserved