OpenSSL Releases Security Advisory for Denial-of-Service Vulnerability

Read the original article: OpenSSL Releases Security Advisory for Denial-of-Service Vulnerability


OpenSSL released a security advisory yesterday for CVE-2020-1971, a high severity vulnerability capable of crashing applications that use OpenSSL upon checking a maliciously crafted certificate. The issue lies within OpenSSL’s GENERAL_NAME_cmp function which is responsible for comparing different GENERAL_NAME fields to see if they are equal. One of the ways this comparison function is used […]

The post OpenSSL Releases Security Advisory for Denial-of-Service Vulnerability appeared first on Binary Defense.


Read the original article: OpenSSL Releases Security Advisory for Denial-of-Service Vulnerability