B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

USN-8431-1: Ruby vulnerabilities

It was discovered that Ruby's Net::IMAP library did not properly verify that Transport Layer Security (TLS) encryption was started after issuing a STARTTLS command. A remote attacker could possibly use this issue to perform a machine-in-the-middle attack and silently bypass TLS encryption....

Original-Artikel öffnen Zurück zur Übersicht