Summary
The IO::Socket::SSL module for Perl is prone to a security-bypass vulnerability.
Successfully exploiting this issue allows attackers to bypass certain security restrictions, which may aid in spoofing attacks.
Versions prior to IO::Socket::SSL 1.35 are vulnerable.
Solution
Updates are available. Please see the references for more information.
References
Severity
Classification
-
CVE CVE-2010-4334 -
CVSS Base Score: 4.0
AV:N/AC:H/Au:N/C:P/I:P/A:N
Related Vulnerabilities