8 ms·
Time for me to dust off CVE-2010-3170 again? :-)
by richm44 1y ago
Time for me to dust off CVE-2010-3170 again? :-)
- NicolaiS 1y agoI guess a bunch of "roll your own X.509 validation"-logic will have that bug, but to exploit it you need a misbehaving CA to issue you such a cert (i.e. low likelihood)