Timing differences based on validity of TLS messages can be exploited to decrypt the entire session. CVE(s): CVE-2014-0411 Affected product(s) and affected version(s): Rational Application Developer 9.0.1 and earlier ...
via IBM Product Security Incident Response Team http://ibm.co/1iJ7W5m
via IBM Product Security Incident Response Team http://ibm.co/1iJ7W5m
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.