UBUNTU-CVE-2012-5662

Source
https://ubuntu.com/security/CVE-2012-5662
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5662.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2012-5662
Upstream
Published
2014-05-27T14:55:00Z
Modified
2026-05-20T16:03:04.871808839Z
Severity
  • Ubuntu - medium
Summary
[none]
Details

x3270 before 3.3.12ga12 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

References

Affected packages

Ubuntu:18.04:LTS
ibm-3270

Package

Name
ibm-3270
Purl
pkg:deb/ubuntu/ibm-3270?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.3.14ga11-1build1
3.6ga4-1
3.6ga4-1build1
3.6ga4-2
3.6ga4-3

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "3270-common",
            "binary_version": "3.6ga4-3"
        },
        {
            "binary_name": "c3270",
            "binary_version": "3.6ga4-3"
        },
        {
            "binary_name": "pr3287",
            "binary_version": "3.6ga4-3"
        },
        {
            "binary_name": "s3270",
            "binary_version": "3.6ga4-3"
        },
        {
            "binary_name": "x3270",
            "binary_version": "3.6ga4-3"
        },
        {
            "binary_name": "xfonts-x3270-misc",
            "binary_version": "3.6ga4-3"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5662.json"
Ubuntu:20.04:LTS
ibm-3270

Package

Name
ibm-3270
Purl
pkg:deb/ubuntu/ibm-3270?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.6ga4-3build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "3270-common",
            "binary_version": "3.6ga4-3build1"
        },
        {
            "binary_name": "c3270",
            "binary_version": "3.6ga4-3build1"
        },
        {
            "binary_name": "pr3287",
            "binary_version": "3.6ga4-3build1"
        },
        {
            "binary_name": "s3270",
            "binary_version": "3.6ga4-3build1"
        },
        {
            "binary_name": "x3270",
            "binary_version": "3.6ga4-3build1"
        },
        {
            "binary_name": "xfonts-x3270-misc",
            "binary_version": "3.6ga4-3build1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5662.json"
Ubuntu:22.04:LTS
ibm-3270

Package

Name
ibm-3270
Purl
pkg:deb/ubuntu/ibm-3270?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.0ga12-3
4.0ga14-1
4.0ga14-1build1
4.1ga10-1
4.1ga10-1.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "3270-common",
            "binary_version": "4.1ga10-1.1"
        },
        {
            "binary_name": "b3270",
            "binary_version": "4.1ga10-1.1"
        },
        {
            "binary_name": "c3270",
            "binary_version": "4.1ga10-1.1"
        },
        {
            "binary_name": "pr3287",
            "binary_version": "4.1ga10-1.1"
        },
        {
            "binary_name": "s3270",
            "binary_version": "4.1ga10-1.1"
        },
        {
            "binary_name": "tcl3270",
            "binary_version": "4.1ga10-1.1"
        },
        {
            "binary_name": "x3270",
            "binary_version": "4.1ga10-1.1"
        },
        {
            "binary_name": "xfonts-x3270-misc",
            "binary_version": "4.1ga10-1.1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5662.json"
Ubuntu:24.04:LTS
ibm-3270

Package

Name
ibm-3270
Purl
pkg:deb/ubuntu/ibm-3270?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.1ga10-1.1
4.1ga10-1.1build1
4.1ga10-1.1build2

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "3270-common",
            "binary_version": "4.1ga10-1.1build2"
        },
        {
            "binary_name": "b3270",
            "binary_version": "4.1ga10-1.1build2"
        },
        {
            "binary_name": "c3270",
            "binary_version": "4.1ga10-1.1build2"
        },
        {
            "binary_name": "pr3287",
            "binary_version": "4.1ga10-1.1build2"
        },
        {
            "binary_name": "s3270",
            "binary_version": "4.1ga10-1.1build2"
        },
        {
            "binary_name": "tcl3270",
            "binary_version": "4.1ga10-1.1build2"
        },
        {
            "binary_name": "x3270",
            "binary_version": "4.1ga10-1.1build2"
        },
        {
            "binary_name": "xfonts-x3270-misc",
            "binary_version": "4.1ga10-1.1build2"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5662.json"
Ubuntu:25.10
ibm-3270

Package

Name
ibm-3270
Purl
pkg:deb/ubuntu/ibm-3270?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.3ga10-4
4.3ga10-5

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "3270-common",
            "binary_version": "4.3ga10-5"
        },
        {
            "binary_name": "b3270",
            "binary_version": "4.3ga10-5"
        },
        {
            "binary_name": "c3270",
            "binary_version": "4.3ga10-5"
        },
        {
            "binary_name": "pr3287",
            "binary_version": "4.3ga10-5"
        },
        {
            "binary_name": "s3270",
            "binary_version": "4.3ga10-5"
        },
        {
            "binary_name": "tcl3270",
            "binary_version": "4.3ga10-5"
        },
        {
            "binary_name": "x3270",
            "binary_version": "4.3ga10-5"
        },
        {
            "binary_name": "xfonts-x3270-misc",
            "binary_version": "4.3ga10-5"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5662.json"
Ubuntu:26.04:LTS
ibm-3270

Package

Name
ibm-3270
Purl
pkg:deb/ubuntu/ibm-3270?arch=source&distro=resolute

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.3ga10-5
4.3ga10-5build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "3270-common",
            "binary_version": "4.3ga10-5build1"
        },
        {
            "binary_name": "b3270",
            "binary_version": "4.3ga10-5build1"
        },
        {
            "binary_name": "c3270",
            "binary_version": "4.3ga10-5build1"
        },
        {
            "binary_name": "pr3287",
            "binary_version": "4.3ga10-5build1"
        },
        {
            "binary_name": "s3270",
            "binary_version": "4.3ga10-5build1"
        },
        {
            "binary_name": "tcl3270",
            "binary_version": "4.3ga10-5build1"
        },
        {
            "binary_name": "x3270",
            "binary_version": "4.3ga10-5build1"
        },
        {
            "binary_name": "xfonts-x3270-misc",
            "binary_version": "4.3ga10-5build1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5662.json"