Security Advisory

CVE-2014-0626

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-02-18 00:00:00
Last updated 2024-08-06 09:20:19
Assigner dell
State PUBLISHED

Description

The (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 make it easier for remote attackers to bypass intended cryptographic protection mechanisms by triggering application-data processing during the TLS handshake, a time at which the data is both unencrypted and unauthenticated.