rPSA-2008-0322-1 gnutls
rPath Security Advisory: 2008-0322-1
Published: 2008-11-17
    rPath Linux 2

Rating: Minor
Exposure Level Classification:
    Indirect User Deterministic Weakness
Updated Versions: 

rPath Issue Tracking System:


    Previous versions of the gnutls package contain a certificate-chain
    validation error, making it possible for a man-in-the-middle attacker 
    to assume an arbitrary name and then trick GNU TLS clients into trusting
    that name. 

