Re: OpenSSL Security Advisory (fwd)

2024-09-04 Thread mike tancsa
On 9/4/2024 9:27 AM, Wall, Stephen wrote: Possible denial of service in X.509 name checks (CVE-2024-6119) Is this something we need to concern ourselves with? Since no one else is chiming in, I'll provide my feeble thoughts. As I read it, it primarily affects outgoing TLS connections. I.e.,

RE: OpenSSL Security Advisory (fwd)

2024-09-04 Thread Wall, Stephen
>> Possible denial of service in X.509 name checks (CVE-2024-6119) > Is this something we need to concern ourselves with? Since no one else is chiming in, I'll provide my feeble thoughts. As I read it, it primarily affects outgoing TLS connections. I.e., curl, wget, et al, and possibly (and mo