mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
818 B
818 B
CVE-2017-13099
Description
wolfSSL prior to version 3.12.2 provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can recover the private key from a vulnerable wolfSSL application. This vulnerability is referred to as "ROBOT."
POC
Reference
- http://www.kb.cert.org/vuls/id/144389
- http://www.kb.cert.org/vuls/id/144389
- https://robotattack.org/
- https://robotattack.org/
Github
No PoCs found on GitHub currently.