Late TLS certificate verification in WebKitGTK+ prior to 2.6.6 allows remote attackers to view a secure HTTP request, including, for example, secure cookies.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2330
Reference (s):
- https://bugs.webkit.org/show_bug.cgi?id=142244
- https://trac.webkit.org/changeset/181074
- https://webkitgtk.org/security/WSA-2015-0002.html
- GENTOO:GLSA-201706-15
- URL: https://security.gentoo.org/glsa/201706-15

