Описание
The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder
Ссылки
- Issue TrackingPatch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:wolfssl:wolfssl:5.8.2:*:*:*:*:*:*:*
EPSS
Процентиль: 1%
0.00011
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-203
Связанные уязвимости
CVSS3: 4.3
ubuntu
3 месяца назад
The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder
CVSS3: 4.3
debian
3 месяца назад
The server previously verified the TLS 1.3 PSK binder using a non-cons ...
CVSS3: 4.3
github
3 месяца назад
The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder
EPSS
Процентиль: 1%
0.00011
Низкий
4.3 Medium
CVSS3
Дефекты
CWE-203