The OpenSSL address implementation in Socat 1.7.3.0 and 2.0.0-b8 does not use a prime number for the DH, which makes it easier for remote malicious users to obtain the shared secret.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dest-unreach socat 2.0.0 |
||
dest-unreach socat 1.7.3.0 |