Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-130985

Setting first TLS group to an unsupported one yields an empty key share [rhel-9.8]

Linking RHIVOS CVEs to...Migration: Automation ...RHELPRIO AssignedTeam ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Major Major
    • rhel-9.8
    • rhel-9.8
    • openssl
    • None
    • rhel-security-crypto-diamonds
    • 20
    • 0
    • False
    • False
    • Hide

      None

      Show
      None
    • No
    • None
    • None
    • None
    • Unspecified Release Note Type - Unknown
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      OpenSSL needs a backport of https://github.com/openssl/openssl/pull/29192 to prevent sending an empty key share when the first group in a TLS group list is set to an unsupported one.

              pzacik@redhat.com Pavol Zacik
              pzacik@redhat.com Pavol Zacik
              Dmitry Belyavskiy Dmitry Belyavskiy
              Georgios Stavros Pantelakis Georgios Stavros Pantelakis
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated: