Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-22590

May 28, 2024, 5:11 p.m.

Product(s) Impacted

Kwik

  • commit 745fd4e2

Description

The TLS engine in Kwik commit 745fd4e2 does not track the current state of the connection. This vulnerability can allow Client Hello messages to be overwritten at any time, including after a connection has been established.

Weaknesses

Date

Published: May 28, 2024, 4:15 p.m.

Last Modified: May 28, 2024, 5:11 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References