curl: certificate reuse
| Package(s): | curl | CVE #(s): | CVE-2016-7141 | ||||||||||||||||||||||||||||
| Created: | September 9, 2016 | Updated: | September 14, 2016 | ||||||||||||||||||||||||||||
| Description: | From the Debian LTS advisory: It was discovered that libcurl built on top of NSS (Network Security Services) incorrectly re-used client certificates if a certificate from file was used for one TLS connection but no certificate set for a subsequent TLS connection. | ||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||
