VYPR
Medium severity6.5NVD Advisory· Published May 24, 2017· Updated May 13, 2026

CVE-2017-2801

CVE-2017-2801

Description

A programming error exists in a way Randombit Botan cryptographic library version 2.0.1 implements x500 string comparisons which could lead to certificate verification issues and abuse. A specially crafted X509 certificate would need to be delivered to the client or server application in order to trigger this vulnerability.

Affected products

2
  • cpe:2.3:a:botan_project:botan:2.0.1:*:*:*:*:*:*:*
  • Randombit/Botanv5
    Range: 2.0.1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.