CVE-2016-9953

CVE-2016-9953

The verify_certificate function in lib/vtls/schannel.c in libcurl 7.30.0 through 7.51.0, when built for Windows CE using the schannel TLS backend, allows remote attackers to obtain sensitive information, cause a denial of service (crash), or possibly have unspecified other impact via a wildcard certificate name, which triggers an out-of-bounds read.

Source: CVE-2016-9953

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다