GnuTLS session resumption exploit

Seabass PrivateSeaBass at pm.me
Tue Jun 9 19:10:57 MST 2020


What exactly is gnutls used for?
Web servers, or do general users actually use this for TLS connections?
Or something else?

> moin moin,
>
> GnuTLS sessions can be resumed, allowing man in the middle attacks
>
> get yer updates
>
> https://gitlab.com/gnutls/gnutls/-/issues/1011
>
> ciao,
>
> der.hans
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.phxlinux.org/pipermail/plug-discuss/attachments/20200610/e87dcfe2/attachment.html>


More information about the PLUG-discuss mailing list