computer vulnerability CVE-2019-3685

Open Build Service osc: Man-in-the-Middle

Synthesis of the vulnerability

An attacker can act as a Man-in-the-Middle on Open Build Service osc, in order to read or write data in the session.
Vulnerable software: openSUSE Leap.
Severity of this announce: 2/4.
Consequences of an intrusion: data reading, data creation/edition.
Attacker's origin: internet server.
Creation date: 13/08/2019.
Références of this computer vulnerability: CVE-2019-3685, openSUSE-SU-2019:1844-1, VIGILANCE-VUL-30025.

Description of the vulnerability

The Open Build Service osc product uses the TLS protocol, in order to create sec...
