High severity7.5NVD Advisory· Published Mar 10, 2017· Updated May 13, 2026
CVE-2015-2330
CVE-2015-2330
Description
Late TLS certificate verification in WebKitGTK+ prior to 2.6.6 allows remote attackers to view a secure HTTP request, including, for example, secure cookies.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.openwall.com/lists/oss-security/2015/03/17/11nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2015/03/18/4nvdMailing ListThird Party Advisory
- trac.webkit.org/changeset/181074nvdRelease NotesVendor Advisory
- webkitgtk.org/security/WSA-2015-0002.htmlnvdVendor Advisory
- bugs.webkit.org/show_bug.cginvdPermissions Required
- security.gentoo.org/glsa/201706-15nvd
News mentions
0No linked articles in our index yet.