Security Advisory
CVE-2007-4680
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
CFNetwork in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 does not properly validate certificates, which allows remote attackers to spoof trusted SSL certificates via a man-in-the-middle attack.