CVE-2011-3366

Rekonq 0.7.0 and earlier does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name (CN) of a certificate via rich text.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adjam:rekonq:*:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.0.3:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.0.4:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.1:alpha:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.1.0:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.1.95:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.1.98:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.2.0:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.2.90:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.3.0:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.3.90:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.4.90:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.4.95:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.5.0:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.5.80:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.6.0:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.6.1:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.6.80:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.6.85:*:*:*:*:*:*:*
cpe:2.3:a:adjam:rekonq:0.6.95:*:*:*:*:*:*:*

History

21 Nov 2024, 01:30

Type Values Removed Values Added
References () http://www.kde.org/info/security/advisory-20111003-1.txt - Vendor Advisory () http://www.kde.org/info/security/advisory-20111003-1.txt - Vendor Advisory
References () http://www.securityfocus.com/archive/1/520041 - () http://www.securityfocus.com/archive/1/520041 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=743194 - Patch () https://bugzilla.redhat.com/show_bug.cgi?id=743194 - Patch

Information

Published : 2011-11-29 17:55

Updated : 2025-04-11 00:51


NVD link : CVE-2011-3366

Mitre link : CVE-2011-3366

CVE.ORG link : CVE-2011-3366


JSON object : View

Products Affected

adjam

  • rekonq
CWE
CWE-20

Improper Input Validation