Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Mbed TLS through 3.5.1. In mbedtls_ssl_session_reset, the maximum negotiable TLS version is mishandled. For example, if the last connection negotiated TLS 1.2, then 1.2 becomes the new maximum.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mbed TLS 安全漏洞
Vulnerability Description
Mbed TLS是一个开源、可移植、易于使用、可读且灵活的 SSL 库。 Mbed TLS 3.5.1及之前版本存在安全漏洞,该漏洞源于如果某个对等点以前曾与服务器建立过 tls1.2 连接,则programs/ssl/ssl_server2 会拒绝来自该对等点的 tls1.3 连接。
CVSS Information
N/A
Vulnerability Type
N/A