Medium severity5.9NVD Advisory· Published Nov 4, 2012· Updated Jun 16, 2026
CVE-2012-5821
CVE-2012-5821
Description
Lynx does not verify that the server's certificate is signed by a trusted certification authority, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate, related to improper use of a certain GnuTLS function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*+ 3 more
- cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:11.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:-:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*
- osv-coords6 versionspkg:apk/chainguard/lynxpkg:apk/chainguard/lynx-docpkg:apk/chainguard/lynx-langpkg:apk/wolfi/lynxpkg:apk/wolfi/lynx-docpkg:apk/wolfi/lynx-lang
< 0+ 5 more
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
- (no CPE)range: < 0
Patches
Vulnerability mechanics
References
5- www.cs.utexas.edu/~shmat/shmat_ccs12.pdfnvdExploit
- www.ubuntu.com/usn/USN-1642-1nvdThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/79930nvdThird Party AdvisoryVDB Entry
- wiki.mageia.org/en/Support/Advisories/MGASA-2012-0351nvdThird Party Advisory
- www.mandriva.com/security/advisoriesnvdBroken Link
News mentions
0No linked articles in our index yet.