Beveiligingsadvies

CVE-2017-15423

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-08-28 19:00:00
Laatst bijgewerkt 2024-08-05 19:57:25
Toegewezen door Chrome
CVSS-score geen score
Status PUBLISHED

Beschrijving

Inappropriate implementation in BoringSSL SPAKE2 in Google Chrome prior to 63.0.3239.84 allowed a remote attacker to leak the low-order bits of SHA512(password) by inspecting protocol traffic.