Lucene search

K
prionPRIOn knowledge basePRION:CVE-2015-2318
HistoryJan 08, 2018 - 7:29 p.m.

Design/Logic Flaw

2018-01-0819:29:00
PRIOn knowledge base
www.prio-n.com
5

6.7 Medium

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

79.8%

The TLS stack in Mono before 3.12.1 allows man-in-the-middle attackers to conduct message skipping attacks and consequently impersonate clients by leveraging missing handshake state validation, aka a “SMACK SKIP-TLS” issue.

CPENameOperatorVersion
debian_linuxeq6.0
monolt3.12.1

6.7 Medium

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

79.8%