CVE-2016-5419
curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allo
curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.
HIGH · CVSS 7.5
EPSS 0.01912
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules1
YARA rules0