[pkg-lynx-maint] Processed: retitle 991971 to lynx: [CVE-2021-38165] SSL certificate validation fails with URLs containing user name or user name and password, i.e. https://user:password at host/ and https://user at host/\; leaks password in clear text via SNI

Debian Bug Tracking System owner at bugs.debian.org
Sat Aug 7 20:18:03 BST 2021


Processing commands for control at bugs.debian.org:

> retitle 991971 lynx: [CVE-2021-38165] SSL certificate validation fails with URLs containing user name or user name and password, i.e. https://user:password@host/ and https://user@host/\; leaks password in clear text via SNI
Bug #991971 {Done: Andreas Metzler <ametzler at debian.org>} [lynx] lynx: SSL certificate validation fails with URLs containing user name or user name and password, i.e. https://user:password@host/ and https://user@host/; leaks password in clear text via SNI
Changed Bug title to 'lynx: [CVE-2021-38165] SSL certificate validation fails with URLs containing user name or user name and password, i.e. https://user:password@host/ and https://user@host/\; leaks password in clear text via SNI' from 'lynx: SSL certificate validation fails with URLs containing user name or user name and password, i.e. https://user:password@host/ and https://user@host/; leaks password in clear text via SNI'.
> thanks
Stopping processing here.

Please contact me if you need assistance.
-- 
991971: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=991971
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems



More information about the pkg-lynx-maint mailing list