Skip to content

CVE-2022-29242 fix

Compare
Choose a tag to compare
@beldmit beldmit released this 23 May 07:49
· 17 commits to master since this release

GOST engine didn't process the passed buffer size on making key blob correctly. It caused buffer overflow in client in case when server had 512-bit keys and KUZNYECHIK-based ciphersuite was in use.