-
Bug
-
Resolution: Unresolved
-
Normal
-
None
-
rhel-10.0
-
None
-
No
-
Low
-
rhel-security-crypto-diamonds
-
ssg_security
-
None
-
False
-
False
-
-
None
-
None
-
None
-
None
-
None
When openssl server receives hybrid ML-KEM shares with the ML-KEM being malformed, it doesn't reject the client key shares.
https://github.com/openssl/openssl/issues/25781
openssl-3.2.2-13.el10.x86_64
oqsprovider-0.7.0-2.el10.x86_64
liboqs-0.11.0-3.el10.x86_64
- relates to
-
RHEL-64255 Error handling in TLS for hybrid ML-KEM invalid/missing
-
- Closed
-
- links to