gvmd icon indicating copy to clipboard operation
gvmd copied to clipboard

Certificate scan: Issuer and Subject not rendered properly

Open 40417256 opened this issue 11 months ago • 0 comments

Expected behaviour

The x.509 certificate is RFC compliant with UTF8 strings for issuer and subject

The fields are rendered properly using UTF8

Actual behavior

SSL Scan report SSL/TLS: Collect and Report Certificate Details OID: 1.3.6.1.4.1.25623.1.0.103692

issued by | CN=STAGING 01,O=STAGING xxxxxxxxx YatÃ\x0084±rÃ\x0084±mlarÃ\x0084± A.ÅÂ\x009E.,L=Ã\x0084°STANBUL,ST=Ã\x0084°BB,C=TR .... subject | CN=xxxxxxxx.xxx.com,O=STAGING xxxxxxxxxxxxxx YatÃ\x0084±rÃ\x0084±mlarÃ\x0084± A.ÅÂ\x009E.,L=Ã\x0084°STANBUL,ST=Ã\x0084°BB,C=TR

Steps to reproduce

Create an x.509 certificate with UTF8 encoded issuer and/or subject

Install the certificate on a web server on the target machine

Scan the target with the [Collect and Report Certificate Details OID: 1.3.6.1.4.1.25623.1.0.103692]

Consult the report

GVM versions

Greenbone Security Assistant 22.11.0

Greenbone Vulnerability Manager 23.8.1 Manager DB revision 256

OpenVAS 23.8.2

gvm-libs 22.10.0

openvas-smb 22.5.3

OSP Server for openvas: 22.7.1 OSP: 22.7.1 OSPd OpenVAS: 22.7.1

Environment

Linux xxxxxxxxxxxxxxxx 6.8.0-51-generic greenbone/openvas-scanner#52-Ubuntu SMP PREEMPT_DYNAMIC Thu Dec 5 13:09:44 UTC 2024 x86_64 x86_64 x86_64 GNU/Linux

DISTRIB_ID=Ubuntu DISTRIB_RELEASE=24.04 DISTRIB_CODENAME=noble DISTRIB_DESCRIPTION="Ubuntu 24.04.1 LTS"

source installation

40417256 avatar Jan 14 '25 12:01 40417256