Unrated severityNVD Advisory· Published Mar 24, 2018· Updated Aug 5, 2024
CVE-2018-8970
CVE-2018-8970
Description
The int_x509_param_set_hosts function in lib/libcrypto/x509/x509_vpm.c in LibreSSL 2.7.0 before 2.7.1 does not support a certain special case of a zero name length, which causes silent omission of hostname verification, and consequently allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. NOTE: the LibreSSL documentation indicates that this special case is supported, but the BoringSSL documentation does not.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- boringssl.googlesource.com/boringssl/+/e759a9cd84198613199259dbed401f4951747cffmitrex_refsource_MISC
- ftp.openbsd.org/pub/OpenBSD/LibreSSL/libressl-2.7.1-relnotes.txtmitrex_refsource_MISC
- github.com/libressl-portable/openbsd/commit/0654414afcce51a16d35d05060190a3ec4618d42mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.