mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2025-04-15 23:42:41 +00:00
Add CVE IDs to Changelog
Signed-off-by: Janos Follath <janos.follath@arm.com>
This commit is contained in:
parent
5aef299006
commit
9edd7fd002
@ -4,3 +4,4 @@ Security
|
||||
An attacker was able to prevent an Mbed TLS server from establishing any
|
||||
TLS 1.3 connection potentially resulting in a Denial of Service or forced
|
||||
version downgrade from TLS 1.3 to TLS 1.2. Fixes #8654 reported by hey3e.
|
||||
Fixes CVE-2024-28755.
|
||||
|
@ -8,3 +8,4 @@ Security
|
||||
- If the TLS 1.2 implementation was disabled at runtime, a TLS 1.2 client
|
||||
was able to successfully establish a TLS 1.2 connection with the server.
|
||||
Reported by alluettiv on GitHub.
|
||||
Fixes CVE-2024-28836.
|
||||
|
Loading…
x
Reference in New Issue
Block a user