Логотип exploitDog
bind:CVE-2017-8301
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-8301

Количество 3

Количество 3

nvd логотип

CVE-2017-8301

почти 9 лет назад

LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_verify_result is relied upon for a later check of a verification result, in a use case where a user-provided verification callback returns 1, as demonstrated by acceptance of invalid certificates by nginx.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2017-8301

почти 9 лет назад

LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_ ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-phvv-c9gw-v54h

больше 3 лет назад

LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_verify_result is relied upon for a later check of a verification result, in a use case where a user-provided verification callback returns 1, as demonstrated by acceptance of invalid certificates by nginx.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-8301

LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_verify_result is relied upon for a later check of a verification result, in a use case where a user-provided verification callback returns 1, as demonstrated by acceptance of invalid certificates by nginx.

CVSS3: 5.3
0%
Низкий
почти 9 лет назад
debian логотип
CVE-2017-8301

LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_ ...

CVSS3: 5.3
0%
Низкий
почти 9 лет назад
github логотип
GHSA-phvv-c9gw-v54h

LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_verify_result is relied upon for a later check of a verification result, in a use case where a user-provided verification callback returns 1, as demonstrated by acceptance of invalid certificates by nginx.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу