A remote server can obtain security trust even if the trust is not valid, when multiple CAs have signed the TLS server certificate or in cases
of broken server certificate chains. This indication of trust may be passed along to clients allowing access to unsafe or hijacked services.
Created squid tracking bugs for this issue:
Affects: fedora-all [bug 2010686]
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):