Description
txAWS (all current versions) fail to perform complete certificate verification resulting in vulnerability to MitM attacks and information disclosure.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-0138 | txAWS (all current versions) fail to perform complete certificate verification resulting in vulnerability to MitM attacks and information disclosure. |
Github GHSA |
GHSA-cggm-52qp-wvw7 | txAWS AWSServiceEndpoint defaults to not verifying server certificates |
References
| Link | Providers |
|---|---|
| https://github.com/twisted/txaws/issues/24 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T21:45:26.144Z
Reserved: 2017-07-10T00:00:00.000Z
Link: CVE-2017-1000007
No data.
Status : Modified
Published: 2017-07-17T13:18:16.127
Modified: 2026-06-17T00:58:34.560
Link: CVE-2017-1000007
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA