Improper Certificate Validation in GnuTLS - CVE-2009-2730
Published: August 12, 2009 / Updated: April 30, 2026
GnuTLS
Detailed vulnerability description
The vulnerability allows a remote attacker to spoof certificate hostname validation.
The vulnerability exists due to improper certificate validation in certificate hostname validation when verifying certificates. A remote attacker can present a certificate with a mismatched hostname to spoof certificate hostname validation.