top | item 44379904

(no title)

richm44 | 8 months ago

Time for me to dust off CVE-2010-3170 again? :-)

discuss

order

NicolaiS|8 months ago

I guess a bunch of "roll your own X.509 validation"-logic will have that bug, but to exploit it you need a misbehaving CA to issue you such a cert (i.e. low likelihood)