Description
The ssl_parse_client_key_exchange function in XySSL before 0.9 does not protect against certain Bleichenbacher attacks using chosen ciphertext, which allows remote attackers to recover keys via unspecified vectors.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2008-7087 | The ssl_parse_client_key_exchange function in XySSL before 0.9 does not protect against certain Bleichenbacher attacks using chosen ciphertext, which allows remote attackers to recover keys via unspecified vectors. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T11:56:14.250Z
Reserved: 2009-08-31T00:00:00.000Z
Link: CVE-2008-7128
No data.
Status : Modified
Published: 2009-08-31T10:30:01.217
Modified: 2026-04-23T00:35:47.467
Link: CVE-2008-7128
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD