ZeroHour

CVE-2017-1000415

CVSS 3.0
5.9 medium
EPSS
<1%p40
Published
()
Modified
Description

MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation in its X.509 certificate validation process resulting in some certificates have their expiration (beginning) year extended (delayed) by 100 years.

Vendors
matrixssl
Products
matrixssl
Weakness
CWE-295
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.