MatrixSSL before 3.8.3 configured with RSA Cipher Suites allows remote attackers to obtain sensitive information via a Bleichenbacher variant attack.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://github.com/matrixssl/matrixssl/blob/master/CHANGES.md | patch release notes |
http://www.openwall.com/lists/oss-security/2016/08/19/8 | mailing list |
http://www.securityfocus.com/bid/91488 | vdb entry |