← Back

CVE-2011-4129

nvd nist
Published: Oct 22, 2012Modified: Apr 29, 2026

JSON object

Loading...
5.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:N
Exploitability: 8.6 / Impact: 4.9
Source: NVD

Description

(1) services/twitter/twitter-contact-view.c and (2) services/twitter/twitter-item-view.c in libsocialweb before 0.25.20 automatically connect to Twitter when no Twitter account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.

Affected (20)

Products: Gnome: Libsocialweb
1 product
Libsocialweb
Configuration A
20 vulnerable
Vulnerable SoftwareAffected Versions
Gnome
Up to 0.25.19
Version 0.25.0
Version 0.25.10
Version 0.25.11
Version 0.25.12
Version 0.25.13
Version 0.25.14
Version 0.25.15
Version 0.25.16
Version 0.25.17
Version 0.25.18
Version 0.25.1
Version 0.25.2
Version 0.25.3
Version 0.25.4
Version 0.25.5
Version 0.25.6
Version 0.25.7
Version 0.25.8
Version 0.25.9

References (10)

Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Issue Tracking
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking

Timeline

No history available yet.