mirror of
https://github.com/Mbed-TLS/mbedtls-framework.git
synced 2026-08-05 10:47:46 +00:00
Tiny fix in ChangeLog
Signed-off-by: Elena Uziunaite <[email protected]>
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
Security
|
||||
* With TLS 1.3, when a server enables optional authentication of the
|
||||
client, if the client-provided certificate does not have appropriate values
|
||||
in if keyUsage or extKeyUsage extensions, then the return value of
|
||||
in keyUsage or extKeyUsage extensions, then the return value of
|
||||
mbedtls_ssl_get_verify_result() would incorrectly have the
|
||||
MBEDTLS_X509_BADCERT_KEY_USAGE and MBEDTLS_X509_BADCERT_KEY_USAGE bits
|
||||
clear. As a result, an attacker that had a certificate valid for uses other
|
||||
|
||||
Reference in New Issue
Block a user