PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trigger an information leak of values from earlier certificates.
References
Configurations
History
21 Nov 2024, 00:05
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.rtfm.com/puretls/ - | |
References | () http://www1.ietf.org/mail-archive/web/tls/current/msg00229.html - |
Information
Published : 2005-12-31 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-4839
Mitre link : CVE-2005-4839
CVE.ORG link : CVE-2005-4839
JSON object : View
Products Affected
claymore_systems_inc
- puretls
CWE