MEDIUM
Entrust Entelligence Security Provider (ESP) 8 does not properly validate certificates in certain circumstances involving (1) a chain that omits the root Certification Authority (CA) certificate, or an application that specifies disregarding (2) unknown revocation statuses during path validation or (3) certain errors in the certification path, which might allow context-dependent attackers to spoof certificate authentication
Published Aug 29, 2007
6.4
MEDIUMCVSS 2.0
EPSS 0.63%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.