OpenSSL and SSLeay allow remote attackers to reuse SSL sessions and bypass access controls.
View Full Alert
Related Posts
CVE-1999-0199manual/search.texi in the GNU C Library (aka glibc) before 2.2 lacks a statement about the unspecified tdelete return value upon deletion of a tree's root, which might allow attackers to…
CVE-2011-0428 (ikiwiki)Cross Site Scripting (XSS) in ikiwiki before 3.20110122 could allow remote attackers to insert arbitrary JavaScript due to insufficient checking in comments. View Full Alert
CVE-2016-10931 (openssl)An issue was discovered in the openssl crate before 0.9.0 for Rust. There is an SSL/TLS man-in-the-middle vulnerability because certificate verification is off by default and there is no API…