Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f7g9-f9cq-4whw

Опубликовано: 24 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Bramble Handshake Protocol (BHP) in Briar before 1.5.3 is not forward secure: eavesdroppers can decrypt network traffic between two accounts if they later compromise both accounts. NOTE: the eavesdropping is typically impractical because BHP runs over an encrypted session that uses the Tor hidden service protocol.

Bramble Handshake Protocol (BHP) in Briar before 1.5.3 is not forward secure: eavesdroppers can decrypt network traffic between two accounts if they later compromise both accounts. NOTE: the eavesdropping is typically impractical because BHP runs over an encrypted session that uses the Tor hidden service protocol.

EPSS

Процентиль: 27%
0.00097
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-326

Связанные уязвимости

CVSS3: 5.9
nvd
больше 2 лет назад

Bramble Handshake Protocol (BHP) in Briar before 1.5.3 is not forward secure: eavesdroppers can decrypt network traffic between two accounts if they later compromise both accounts. NOTE: the eavesdropping is typically impractical because BHP runs over an encrypted session that uses the Tor hidden service protocol.

CVSS3: 5.9
debian
больше 2 лет назад

Bramble Handshake Protocol (BHP) in Briar before 1.5.3 is not forward ...

EPSS

Процентиль: 27%
0.00097
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-326