Lucene search

K
redhatcveRedhat.comRH:CVE-2016-5420
HistoryAug 03, 2016 - 9:48 a.m.

CVE-2016-5420

2016-08-0309:48:41
redhat.com
access.redhat.com
10

0.005 Low

EPSS

Percentile

76.4%

It was found that the libcurl library did not check the client certificate when choosing the TLS connection to reuse. An attacker could potentially use this flaw to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.