Security Advisory

CVE-2016-20011

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-05-25 20:09:43
Last updated 2024-08-06 03:47:35
Assigner mitre
State PUBLISHED

Description

libgrss through 0.7.0 fails to perform TLS certificate verification when downloading feeds, allowing remote attackers to manipulate the contents of feeds without detection. This occurs because of the default behavior of SoupSessionSync.