Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-682w-9rvw-qw43

Опубликовано: 18 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An issue in MatrixSSL 4.5.1-open and earlier leads to failure to securely check the SessionID field, resulting in the misuse of an all-zero MasterSecret that can decrypt secret data.

An issue in MatrixSSL 4.5.1-open and earlier leads to failure to securely check the SessionID field, resulting in the misuse of an all-zero MasterSecret that can decrypt secret data.

EPSS

Процентиль: 73%
0.00755
Низкий

7.5 High

CVSS3

Дефекты

CWE-665
CWE-862

Связанные уязвимости

CVSS3: 7.5
nvd
около 3 лет назад

An issue in MatrixSSL 4.5.1-open and earlier leads to failure to securely check the SessionID field, resulting in the misuse of an all-zero MasterSecret that can decrypt secret data.

CVSS3: 7.5
debian
около 3 лет назад

An issue in MatrixSSL 4.5.1-open and earlier leads to failure to secur ...

EPSS

Процентиль: 73%
0.00755
Низкий

7.5 High

CVSS3

Дефекты

CWE-665
CWE-862