Description
In words.protocols.jabber.xmlstream in Twisted through 19.2.1, XMPP support did not verify certificates when used with TLS, allowing an attacker to MITM connections.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0147 | In words.protocols.jabber.xmlstream in Twisted through 19.2.1, XMPP support did not verify certificates when used with TLS, allowing an attacker to MITM connections. |
Github GHSA |
GHSA-65rm-h285-5cc5 | Improper Certificate Validation in Twisted |
Ubuntu USN |
USN-4308-1 | Twisted vulnerabilities |
Ubuntu USN |
USN-4308-2 | Twisted vulnerabilities |
References
History
Mon, 25 Nov 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Twisted
Twisted twisted |
|
| CPEs | cpe:2.3:a:twisted:twisted:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Twistedmatrix
Twistedmatrix twisted |
Twisted
Twisted twisted |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:32:55.450Z
Reserved: 2019-06-16T00:00:00.000Z
Link: CVE-2019-12855
No data.
Status : Modified
Published: 2019-06-16T12:29:00.227
Modified: 2024-11-25T18:12:24.673
Link: CVE-2019-12855
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA
Ubuntu USN