CVE-2005-0238: Medium severity Gnome Epiphany vulnerability
The International Domain Name (IDN) support in Epiphany allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0238?
CVE-2005-0238 is considered a moderate severity vulnerability due to its potential to facilitate phishing attacks.
How do I fix CVE-2005-0238?
To fix CVE-2005-0238, ensure that you update to the latest version of the affected software that addresses this vulnerability.
What are the risks associated with CVE-2005-0238?
The risks associated with CVE-2005-0238 include the possibility of attackers spoofing domain names, potentially leading to successful phishing attacks.
Which software is affected by CVE-2005-0238?
CVE-2005-0238 affects software such as GNOME Epiphany, Mozilla Camino, OmniGroup OmniWeb, Opera browser, and earlier versions of Mozilla.
How does CVE-2005-0238 exploit domain names?
CVE-2005-0238 exploits domain names through International Domain Name (IDN) support that allows punycode encoded domain names to use homograph characters.