Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The TLS Handshake Protocol implementation in Secure Transport in Apple OS X before 10.11 accepts a Certificate Request message within a session in which no Server Key Exchange message has been sent, which allows remote attackers to have an unspecified impact via crafted TLS data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple OS X Secure Transport组件代码注入漏洞
Vulnerability Description
Apple OS X是美国苹果(Apple)公司为Mac计算机所开发的一套专用操作系统。Secure Transport是其中的一个用于安全传送文件和数据的组件。 Apple OS X 10.10.5及之前版本的Secure Transport组件中的TLS Handshake Protocol实现过程中存在安全漏洞,该漏洞源于程序在ServerKeyExchange信息发送之前接收CertificateRequest信息。远程攻击者可借助特制的TLS数据利用该漏洞获取证书信息。
CVSS Information
N/A
Vulnerability Type
N/A