Lucene search

K
fedoraFedoraFEDORA:E040F20BA680
HistoryOct 24, 2023 - 1:13 a.m.

[SECURITY] Fedora 37 Update: fizz-2023.10.16.00-1.fc37

2023-10-2401:13:17
lists.fedoraproject.org
12
fedora
update
fizz
tls 1.3
drafts 28
drafts 26
drafts 23
handshake modes
psk resumption
early data
client authentication
helloretryrequest
unix

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

8.8

Confidence

High

EPSS

0.816

Percentile

98.4%

Fizz is a TLS 1.3 implementation. Fizz currently supports TLS 1.3 drafts 28, 26 (both wire-compatible with the final specification), and 23. All major handshake modes are supported, includ ing PSK resumption, early data, client authentication, and HelloRetryRequest.

OSVersionArchitecturePackageVersionFilename
Fedora37anyfizz< 2023.10.16.00UNKNOWN

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

8.8

Confidence

High

EPSS

0.816

Percentile

98.4%