A certificate verification error in wolfSSL when building with the WOLFSSL_SYS_CA_CERTS and WOLFSSL_APPLE_NATIVE_CERT_VALIDATION options results in the wolfSSL client failing to properly verify the server certificate's domain name, allowing any certificate issued by a trusted CA to be accepted regardless of the hostname.
Solution:
Workaround:
The product does not validate, or incorrectly validates, a certificate.
Link | Tags |
---|---|
http://github.com/wolfssl/wolfssl.git |