MGASA-2021-0472

Source
https://advisories.mageia.org/MGASA-2021-0472.html
Import Source
https://advisories.mageia.org/MGASA-2021-0472.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2021-0472
Related
Published
2021-10-13T19:39:52Z
Modified
2021-10-13T19:10:02Z
Summary
Updated grilo packages fix security vulnerability
Details

Michael Catanzaro reported a problem in Grilo, a framework for discovering and browsing media. TLS certificate verification is not enabled on the SoupSessionAsync objects created by Grilo, leaving users vulnerable to network MITM attacks.

References
Credits

Affected packages