Medium severity5.9NVD Advisory· Published Nov 13, 2019· Updated Jun 16, 2026
CVE-2010-4532
CVE-2010-4532
Description
offlineimap before 6.3.2 does not check for SSL server certificate validation when "ssl = yes" option is specified which can allow man-in-the-middle attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <6.3.2
- offlineimap/offlineimapv5Range: before 6.3.2
Patches
Vulnerability mechanics
References
5- www.openwall.com/lists/oss-security/2010/12/23/2nvdMailing ListPatchThird Party Advisory
- bugs.debian.org/cgi-bin/bugreport.cginvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- security-tracker.debian.org/tracker/CVE-2010-4532nvdThird Party Advisory
- access.redhat.com/security/cve/cve-2010-4532nvdNot Applicable
News mentions
0No linked articles in our index yet.