Apache Software Foundation Qpid Proton 0.12.1

CPE Details

Apache Software Foundation Qpid Proton 0.12.1
0.12.1
2020-08-05
13h48 +00:00
2020-08-05
13h48 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:apache:qpid_proton:0.12.1:*:*:*:*:*:*:*

Informations

Vendor

apache

Product

qpid_proton

Version

0.12.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2016-4467 2017-05-02 12h00 +00:00 The C client and C-based client bindings in the Apache Qpid Proton library before 0.13.1 on Windows do not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate when using the SChannel-based security layer, which allows man-in-the-middle attackers to spoof servers via an arbitrary valid certificate.
5.9
Medium