ipip-coffee queries geolocation information from IP ipip-coffee downloads geolocation resources over HTTP, which leaves it vulnerable to MITM attacks. This could impact the integrity and availability of the data being used to make geolocation decisions by an application.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: hackerone

Published: 2018-06-04T16:00:00Z

Updated: 2024-09-17T01:16:06.952Z

Reserved: 2017-10-29T00:00:00

Link: CVE-2016-10673

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-06-04T16:29:01.923

Modified: 2019-10-09T23:16:59.840

Link: CVE-2016-10673

cve-icon Redhat

No data.