Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rjjg-j224-h375

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

wolfSSL CyaSSL before 2.9.4 does not properly validate X.509 certificates with unknown critical extensions, which allows man-in-the-middle attackers to spoof servers via crafted X.509 certificate.

wolfSSL CyaSSL before 2.9.4 does not properly validate X.509 certificates with unknown critical extensions, which allows man-in-the-middle attackers to spoof servers via crafted X.509 certificate.

EPSS

Процентиль: 52%
0.00285
Низкий

Связанные уязвимости

nvd
почти 12 лет назад

wolfSSL CyaSSL before 2.9.4 does not properly validate X.509 certificates with unknown critical extensions, which allows man-in-the-middle attackers to spoof servers via crafted X.509 certificate.

debian
почти 12 лет назад

wolfSSL CyaSSL before 2.9.4 does not properly validate X.509 certifica ...

EPSS

Процентиль: 52%
0.00285
Низкий