Loading...
Loading...
The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Security Services (NSS) before 3.15.4, when the TLS False Start feature is enabled, allows man-in-the-middle attackers to spoof SSL servers by using an arbitrary X.509 certificate during certain handshake traffic.
January 18, 2014
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-1740
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.