[qt4] [CVE-2007-5965] error in handling certificate verification in SSL connections

Bug #191218 reported by disabled.user
254
Affects Status Importance Assigned to Milestone
qt4-x11 (Ubuntu)
Invalid
Undecided
Unassigned
Gutsy
Fix Released
Undecided
Unassigned

Bug Description

Binary package hint: libqt4-core

References:
MDVSA-2008:042 (http://www.mandriva.com/en/security/advisories?name=MDVSA-2008:042)
SUSE-SR:2008:002 (http://www.novell.com/linux/security/advisories/suse_security_summary_report.html)

Quoting CVE-2007-5965:
"QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed service, or trick a service into accepting an invalid client certificate for a user."

CVE References

Jonathan Riddell (jr)
Changed in qt4-x11:
status: New → Invalid
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package qt4-x11 - 4.3.2-0ubuntu3.2

---------------
qt4-x11 (4.3.2-0ubuntu3.2) gutsy-security; urgency=low

  * SECURITY UPDATE: a potential vulnerability in QSslSocket, which
    might cause a certificate verification in SSL connections not to
    be performed. As a consequence, code using QSslSocket might be
    misled into thinking the certificate was verified correctly when
    it actually failed in one or more criteria.
  * Added kubuntu_02_qsslsocket_verification.dpatch from
    http://www.trolltech.com/developer/download/190133.patch: ensure
    certificates are verified. (Fixes LP: #191218)
  * References
    http://trolltech.com/company/newsroom/announcements/press.2007-12-21.2182567220
    CVE-2007-5965

 -- Jonathan Riddell <email address hidden> Wed, 20 Feb 2008 00:26:45 +0000

Changed in qt4-x11:
status: New → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.