mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2025-08-08 17:42:09 +03:00
6
ChangeLog.d/tls13-only-server-infinite-loop.txt
Normal file
6
ChangeLog.d/tls13-only-server-infinite-loop.txt
Normal file
@@ -0,0 +1,6 @@
|
||||
Security
|
||||
* Fixed a critical denial of service in TLS 1.3 only server (TLS 1.2 support
|
||||
disabled at build time): a TLS client could put the TLS 1.3 only server in
|
||||
a infinite loop processing a TLS 1.2 ClientHello. The default
|
||||
configuration is not affected. Reported by Matthias Mucha and Thomas
|
||||
Blattmann, SICK AG.
|
Reference in New Issue
Block a user