Описание
In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before 25.0.2, there is a Client Authentication Bypass in certain client-certification situations for SSL, TLS, and DTLS.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | released | 1:24.3.4.5+dfsg-1 |
| esm-infra-legacy/trusty | needs-triage | |
| esm-infra/bionic | needs-triage | |
| esm-infra/focal | released | 1:22.2.7+dfsg-1ubuntu0.2 |
| esm-infra/xenial | needs-triage | |
| focal | released | 1:22.2.7+dfsg-1ubuntu0.2 |
| jammy | released | 1:24.2.1+dfsg-1ubuntu0.1 |
| kinetic | released | 1:24.3.4.1+dfsg-1ubuntu0.1 |
| lunar | released | 1:24.3.4.5+dfsg-1 |
Показывать по
EPSS
9.8 Critical
CVSS3
Связанные уязвимости
In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before 25.0.2, there is a Client Authentication Bypass in certain client-certification situations for SSL, TLS, and DTLS.
In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before 25.0.2, there is a Client Authentication Bypass in certain client-certification situations for SSL, TLS, and DTLS.
In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before ...
EPSS
9.8 Critical
CVSS3