PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trigger an information leak of values from earlier certificates.
References
Configurations
Information
Published : 2005-12-30 21:00
Updated : 2008-09-05 13:57
NVD link : CVE-2005-4839
Mitre link : CVE-2005-4839
JSON object : View
CWE
Products Affected
claymore_systems_inc
- puretls