Security Advisory

CVE-2020-1596

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-09-11 17:09:27
Last updated 2024-08-04 06:39:10
Assigner microsoft
State PUBLISHED

Description

<p>A information disclosure vulnerability exists when TLS components use weak hash algorithms. An attacker who successfully exploited this vulnerability could obtain information to further compromise a userss encrypted transmission channel.</p> <p>To exploit the vulnerability, an attacker would have to conduct a man-in-the-middle attack.</p> <p>The update addresses the vulnerability by correcting how TLS components use hash algorithms.</p>