First published: Tue May 26 2020(Updated: )
An issue was discovered in ssl.c in Axel before 2.17.8. The TLS implementation lacks hostname verification.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axel | <2.17.8 | |
Fedora | =33 | |
Fedora | =34 | |
openSUSE Backports | =15.0-sp1 | |
openSUSE | =15.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-13614 has a moderate severity level due to the lack of hostname verification in the TLS implementation.
To fix CVE-2020-13614, upgrade Axel to version 2.17.8 or later.
Versions of Axel prior to 2.17.8 are affected by CVE-2020-13614.
Yes, CVE-2020-13614 affects Fedora versions 33 and 34, as well as openSUSE versions 15.0-sp1 and 15.1.
CVE-2020-13614 is a security vulnerability related to insufficient hostname verification in the TLS protocol.