Skip to main content
Loading…
    CVE-2003-0078 — ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing — CVE Database · The Intelligence Room