net/socket/ssl_client_socket_nss.cc in the TLS implementation in Google Chrome before 31.0.1650.48 does not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which might allow remote web servers to interfere with trust relationships by renegotiating a session.
2013-11-13T15:55:04.407
2025-04-11T00:51:21.963
Deferred
CVSSv2: 4.3 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | chrome | ≤ 31.0.1650.47 | Yes | |
Application | chrome | 31.0.1650.0 | Yes | |
Application | chrome | 31.0.1650.2 | Yes | |
Application | chrome | 31.0.1650.3 | Yes | |
Application | chrome | 31.0.1650.4 | Yes | |
Application | chrome | 31.0.1650.5 | Yes | |
Application | chrome | 31.0.1650.6 | Yes | |
Application | chrome | 31.0.1650.7 | Yes | |
Application | chrome | 31.0.1650.8 | Yes | |
Application | chrome | 31.0.1650.9 | Yes | |
Application | chrome | 31.0.1650.10 | Yes | |
Application | chrome | 31.0.1650.11 | Yes | |
Application | chrome | 31.0.1650.12 | Yes | |
Application | chrome | 31.0.1650.13 | Yes | |
Application | chrome | 31.0.1650.14 | Yes | |
Application | chrome | 31.0.1650.15 | Yes | |
Application | chrome | 31.0.1650.16 | Yes | |
Application | chrome | 31.0.1650.17 | Yes | |
Application | chrome | 31.0.1650.18 | Yes | |
Application | chrome | 31.0.1650.19 | Yes | |
Application | chrome | 31.0.1650.20 | Yes | |
Application | chrome | 31.0.1650.22 | Yes | |
Application | chrome | 31.0.1650.23 | Yes | |
Application | chrome | 31.0.1650.25 | Yes | |
Application | chrome | 31.0.1650.26 | Yes | |
Application | chrome | 31.0.1650.27 | Yes | |
Application | chrome | 31.0.1650.28 | Yes | |
Application | chrome | 31.0.1650.29 | Yes | |
Application | chrome | 31.0.1650.30 | Yes | |
Application | chrome | 31.0.1650.31 | Yes | |
Application | chrome | 31.0.1650.32 | Yes | |
Application | chrome | 31.0.1650.33 | Yes | |
Application | chrome | 31.0.1650.34 | Yes | |
Application | chrome | 31.0.1650.35 | Yes | |
Application | chrome | 31.0.1650.36 | Yes | |
Application | chrome | 31.0.1650.37 | Yes | |
Application | chrome | 31.0.1650.38 | Yes | |
Application | chrome | 31.0.1650.39 | Yes | |
Application | chrome | 31.0.1650.41 | Yes | |
Application | chrome | 31.0.1650.42 | Yes | |
Application | chrome | 31.0.1650.43 | Yes | |
Application | chrome | 31.0.1650.44 | Yes | |
Application | chrome | 31.0.1650.45 | Yes | |
Application | chrome | 31.0.1650.46 | Yes |