Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-xcf7-rvmh-g6q4: `openssl` `X509VerifyParamRef::set_host` buffer over-read

When this function was passed an empty string, openssl would attempt to call strlen on it, reading arbitrary memory until it reached a NUL byte.

ghsa
#git#ssl

`openssl` `X509VerifyParamRef::set_host` buffer over-read

Moderate severity GitHub Reviewed Published Jun 21, 2023 to the GitHub Advisory Database

ghsa: Latest News

GHSA-x7m9-mv49-fv73: Vaultwarden vulnerable to user impersonation