CVE-2022-45197 Information
Dec 26, 2022
cve
Description
Slixmpp before 1.8.3 lacks SSL Certificate hostname validation in XMLStream allowing an attacker to pose as any server in the eyes of Slixmpp.
Reference
https://github.com/poezio/slixmpp/commits/master/slixmpp/xmlstream/xmlstream.py https://github.com/poezio/slixmpp/tags https://lab.louiz.org/poezio/slixmpp/-/commits/master https://lab.louiz.org/poezio/slixmpp/-/commit/b60b1b985db928532f97c4f61d6fbc801f0aa7fa
Share on: