Security Advisory

CVE-2015-0282

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-03-24 17:00:00
Last updated 2024-08-06 04:03:10
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

GnuTLS before 3.1.0 does not verify that the RSA PKCS #1 signature algorithm matches the signature algorithm in the certificate, which allows remote attackers to conduct downgrade attacks via unspecified vectors.