PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trigger an information leak of values from earlier certificates.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Puretls |
Claymore_systems_inc |
* |
0.9b4 (including) |
References