Description
txAWS (all current versions) fail to perform complete certificate verification resulting in vulnerability to MitM attacks and information disclosure.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-0138 | txAWS (all current versions) fail to perform complete certificate verification resulting in vulnerability to MitM attacks and information disclosure. |
Github GHSA |
GHSA-cggm-52qp-wvw7 | txAWS AWSServiceEndpoint defaults to not verifying server certificates |
References
| Link | Providers |
|---|---|
| https://github.com/twisted/txaws/issues/24 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T21:45:26.144Z
Reserved: 2017-07-10T00:00:00.000Z
Link: CVE-2017-1000007
No data.
Status : Modified
Published: 2017-07-17T13:18:16.127
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-1000007
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA