CVE-2011-3444

Publication date

2012-02-02 18:00:00

Family

apple

State

PUBLISHED

Description

Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote attackers to read CardDAV data by terminating an encrypted connection and then sniffing the network.