Opera before 10.00 does not check all intermediate X.509 certificates for revocation, which makes it easier for remote SSL servers to bypass validation of the certificate chain via a revoked certificate.
References
Configurations
History
No history.
Information
Published : 2009-09-02 17:30
Updated : 2025-04-09 00:30
NVD link : CVE-2009-3046
Mitre link : CVE-2009-3046
CVE.ORG link : CVE-2009-3046
JSON object : View
Products Affected
opera
- opera_browser
CWE
CWE-295
Improper Certificate Validation