Medium severity6.5NVD Advisory· Published May 24, 2017· Updated May 13, 2026
CVE-2017-2801
CVE-2017-2801
Description
A programming error exists in a way Randombit Botan cryptographic library version 2.0.1 implements x500 string comparisons which could lead to certificate verification issues and abuse. A specially crafted X509 certificate would need to be delivered to the client or server application in order to trigger this vulnerability.
Affected products
2- cpe:2.3:a:botan_project:botan:2.0.1:*:*:*:*:*:*:*
- Randombit/Botanv5Range: 2.0.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- talosintelligence.com/vulnerability_reports/TALOS-2017-0294nvdExploitMitigationThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/98106nvdThird Party AdvisoryUS Government Resource
- www.debian.org/security/2017/dsa-3939nvd
News mentions
0No linked articles in our index yet.