CVE-2020-13614: Medium severity axel vulnerability
Published May 26, 2020
·Updated
An issue was discovered in ssl.c in Axel before 2.17.8. The TLS implementation lacks hostname verification.
Affected Software
5 affected components
Axel Project Axel<2.17.8
Fedoraproject Fedora=33
Fedoraproject Fedora=34
openSUSE Backports SLE=15.0-sp1
openSUSE Leap=15.1
Event History
May 26, 2020
CVE Published
via MITRE·10:08 PM
Data Sourced
via MITRE·10:08 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-13614?
CVE-2020-13614 has a moderate severity level due to the lack of hostname verification in the TLS implementation.
2
How do I fix CVE-2020-13614?
To fix CVE-2020-13614, upgrade Axel to version 2.17.8 or later.
3
Which versions of Axel are affected by CVE-2020-13614?
Versions of Axel prior to 2.17.8 are affected by CVE-2020-13614.
4
Does CVE-2020-13614 affect Fedora and openSUSE distributions?
Yes, CVE-2020-13614 affects Fedora versions 33 and 34, as well as openSUSE versions 15.0-sp1 and 15.1.
5
What type of vulnerability is CVE-2020-13614?
CVE-2020-13614 is a security vulnerability related to insufficient hostname verification in the TLS protocol.