Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in SUSE Linux Enterprise Desktop 10 allows remote attackers to obtain credentials via a man-in-the-middle attack, a different vulnerability than CVE-2007-5196.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://osvdb.org/45492 | vdb entry |
http://secunia.com/advisories/27229 | third party advisory |
http://www.novell.com/linux/security/advisories/2007_20_sr.html | patch vendor advisory |