CVE Published: 14/10/2011 |
CVE Updated: 06/08/2024 |
CVE Year: 2011 Source: apple |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2011-3427 Description
The Data Security component in Apple iOS before 5 and Apple TV before 4.4 does not properly restrict use of the MD5 hash algorithm within X.509 certificates, which makes it easier for man-in-the-middle attackers to spoof servers or obtain sensitive information via a crafted certificate.