CVE-2009-3767 is a vulnerability in OpenLDAP 2.2 and 2.4, and potentially other versions, when utilizing OpenSSL. It stems from improper handling of a null character in the Common Name field of an X.509 certificate, allowing man-in-the-middle attackers to spoof SSL servers. The vulnerability has a CVSS score of 4.3, indicating a medium attack complexity and potential for partial integrity impact, but no confidentiality or availability impact. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.4.18CPE matchmatch criteria | cpe:2.3:a:openldap:openldap:*:*:*:*:*:*:*:* | ||
< 10.6.2CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* | ||
11CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:11:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2009-3767
Sep 8, 2020libraries/libldap/tls_o.c in OpenLDAP 2.2 and 2.4 and possibly other versions when OpenSSL is used does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority a related issue to CVE-2009-2408.
Oct 2, 2009OpenLDAP: Doesn't properly handle NULL character in subject Common Name
Aug 10, 2009