wolfSSL(CyaSSL)是美国wolfSSL公司的一个针对嵌入式系统开发人员使用的小的、可移植的嵌入式SSL编程库。 wolfSSL存在安全漏洞,该漏洞源于恶意的 TLS1.2 服务器可以强制具有降级功能的 TLS1.3 客户端使用其不同意的密码套件并实现成功连接。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-1544 | 4.1 MEDIUM | ECDSA nonce bias caused by truncation |
| CVE-2024-5991 | Buffer overread in domain name matching |
No comments yet