CVE-2011-4968: Debian Linux

Medium severity, CVSS 4.8. EPSS: 4% chance of exploitation in the next 30 days.

nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)

Affected products

  • Debian Debian Linux: version 8.0 only
  • F5 Nginx: version 0.7.61 only; version 0.7.62 only; version 0.7.64 only; version 0.7.65 only; version 0.7.66 only; version 0.8.33 only; …

Published 2019-11-19. Last modified 2026-06-16.