Логотип exploitDog
bind:CVE-2026-3230
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-3230

Количество 2

Количество 2

msrc логотип

CVE-2026-3230

2 дня назад

Improper key_share validation in TLS 1.3 HelloRetryRequest

EPSS: Низкий
github логотип

GHSA-g3xr-5f55-cf5g

7 дней назад

Missing required cryptographic step in the TLS 1.3 client HelloRetryRequest handshake logic in wolfSSL could lead to a compromise in the confidentiality of TLS-protected communications via a crafted HelloRetryRequest followed by a ServerHello message that omits the required key_share extension, resulting in derivation of predictable traffic secrets from (EC)DHE shared secret. This issue does not affect the client's authentication of the server during TLS handshakes.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2026-3230

Improper key_share validation in TLS 1.3 HelloRetryRequest

0%
Низкий
2 дня назад
github логотип
GHSA-g3xr-5f55-cf5g

Missing required cryptographic step in the TLS 1.3 client HelloRetryRequest handshake logic in wolfSSL could lead to a compromise in the confidentiality of TLS-protected communications via a crafted HelloRetryRequest followed by a ServerHello message that omits the required key_share extension, resulting in derivation of predictable traffic secrets from (EC)DHE shared secret. This issue does not affect the client's authentication of the server during TLS handshakes.

7 дней назад

Уязвимостей на страницу