Mandriva Linux Security Advisory 2009-210 – A vulnerability have been discovered and corrected in GnuTLS before 2.8.2, which could allow man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority. This update fixes this vulnerability.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/80506/MDVSA-2009-210.txt
Source: https://packetstormsecurity.com/files/80506/Mandriva-Linux-Security-Advisory-2009-210.html