Security Advisory

CVE-2008-7128

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-08-31 10:00:00
Last updated 2024-08-07 11:56:14
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The ssl_parse_client_key_exchange function in XySSL before 0.9 does not protect against certain Bleichenbacher attacks using chosen ciphertext, which allows remote attackers to recover keys via unspecified vectors.