OpenSSL Improper Authentication Vulnerability - CVE-2009-0653
Reference:
CVE-2009-0653
Title:
OpenSSL Improper Authentication Vulnerability
Overview:
OpenSSL probably 0.9.6 does not verify the Basic Constraints for an intermediate CA-signed certificate which allows remote attackers to spoof the certificates of trusted sites via a man-in-the-middle attack a related issue to CVE-2002-0970.