Описание
The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder
Ссылки
- Issue TrackingPatch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:wolfssl:wolfssl:5.8.2:*:*:*:*:*:*:*
EPSS
Процентиль: 17%
0.00256
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-203
Связанные уязвимости
CVSS3: 4.3
ubuntu
9 месяцев назад
The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder
CVSS3: 4.3
debian
9 месяцев назад
The server previously verified the TLS 1.3 PSK binder using a non-cons ...
CVSS3: 4.3
github
9 месяцев назад
The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder
EPSS
Процентиль: 17%
0.00256
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-203