On Thu, 2019-06-20 at 16:27 +0200, Laszlo Ersek wrote: > It is indeed the bug that you think it is ("From code inspection I'd > have guessed that the code would tolerate *any* valid certificate, even > for a host other than the one it actually attempted to connect to.")
:) > I'm CC'ing you on the BZ now, so you can read it even before it gets > opened up. ... and I've pointed out the problem in the implementation of TlsSetVerifyHost(). :) Thanks. -=-=-=-=-=-=-=-=-=-=-=- Groups.io Links: You receive all messages sent to this group. View/Reply Online (#42649): https://edk2.groups.io/g/devel/message/42649 Mute This Topic: https://groups.io/mt/31972894/21656 Group Owner: devel+ow...@edk2.groups.io Unsubscribe: https://edk2.groups.io/g/devel/unsub [arch...@mail-archive.com] -=-=-=-=-=-=-=-=-=-=-=-
smime.p7s
Description: S/MIME cryptographic signature