Candidate: CVE-2010-4340 PublicDate: 2011-09-12 12:41:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4340 Description: libcloud before 0.4.1 does not verify SSL certificates for HTTPS connections, which allows remote attackers to spoof certificates and bypass intended access restrictions via a man-in-the-middle (MITM) attack. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_libcloud: upstream_libcloud: released (0.5.0-1) hardy_libcloud: DNE lucid_libcloud: ignored (reached end-of-life) maverick_libcloud: ignored (reached end-of-life) natty_libcloud: ignored (reached end-of-life) oneiric_libcloud: not-affected (0.5.0-1) precise_libcloud: not-affected (0.5.0-1build1) quantal_libcloud: not-affected (0.5.0-1build1) raring_libcloud: not-affected (0.5.0-1build1) saucy_libcloud: not-affected (0.5.0-1build1) devel_libcloud: not-affected (0.5.0-1build1)