PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trigger an information leak of values from earlier certificates.
References
Configurations
History
No history.
Information
Published : 2005-12-31 05:00
Updated : 2008-09-05 20:57
NVD link : CVE-2005-4839
Mitre link : CVE-2005-4839
CVE.ORG link : CVE-2005-4839
JSON object : View
Products Affected
claymore_systems_inc
- puretls
CWE