Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

OpenSSL 'EVP_VerifyFinal' Function Signature Verification Vulnerability

OpenSSL is prone to a signature-verification vulnerability.

An attacker would likely leverage this issue to conduct phishing attacks or impersonate legitimate sites. Other attacks are also possible.

Releases prior to OpenSSL 0.9.8j are affected.







 

Privacy Statement
Copyright 2009, SecurityFocus