O
pera before 10.00 does not check all intermediate X.509 certificates for revocation, which makes it easier for remote SSL servers to bypass validation of the certificate chain via a revoked certificate.
References
Configurations
History
21 Nov 2024, 01:06
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://www.opera.com/docs/changelogs/freebsd/1000/ - Broken Link, Vendor Advisory | |
| References | () http://www.opera.com/docs/changelogs/linux/1000/ - Broken Link, Vendor Advisory | |
| References | () http://www.opera.com/docs/changelogs/mac/1000/ - Broken Link, Vendor Advisory | |
| References | () http://www.opera.com/docs/changelogs/solaris/1000/ - Broken Link, Vendor Advisory | |
| References | () http://www.opera.com/docs/changelogs/windows/1000/ - Broken Link, Vendor Advisory | |
| References | () http://www.opera.com/support/kb/view/929/ - Broken Link, Vendor Advisory | |
| References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6357 - Broken Link |
Information
Published : 2009-09-02 17:30
Updated : 2025-04-09 00:30
NVD link : CVE-2009-3046
Mitre link : CVE-2009-3046
CVE.ORG link : CVE-2009-3046
JSON object : View
Products Affected
CWE
CWE-295
Improper Certificate Validation