CVE-2016-2850
EUVD-2016-392313.05.2016, 14:59
Botan 1.11.x before 1.11.29 does not enforce TLS policy for (1) signature algorithms and (2) ECC curves, which allows remote attackers to conduct downgrade attacks via unspecified vectors.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| botan_project | botan | 1.11.0 |
| botan_project | botan | 1.11.1 |
| botan_project | botan | 1.11.2 |
| botan_project | botan | 1.11.3 |
| botan_project | botan | 1.11.4 |
| botan_project | botan | 1.11.5 |
| botan_project | botan | 1.11.6 |
| botan_project | botan | 1.11.7 |
| botan_project | botan | 1.11.8 |
| botan_project | botan | 1.11.9 |
| botan_project | botan | 1.11.10 |
| botan_project | botan | 1.11.11 |
| botan_project | botan | 1.11.12 |
| botan_project | botan | 1.11.13 |
| botan_project | botan | 1.11.14 |
| botan_project | botan | 1.11.15 |
| botan_project | botan | 1.11.16 |
| botan_project | botan | 1.11.17 |
| botan_project | botan | 1.11.18 |
| botan_project | botan | 1.11.19 |
| botan_project | botan | 1.11.20 |
| botan_project | botan | 1.11.21 |
| botan_project | botan | 1.11.22 |
| botan_project | botan | 1.11.23 |
| botan_project | botan | 1.11.24 |
| botan_project | botan | 1.11.25 |
| botan_project | botan | 1.11.26 |
| botan_project | botan | 1.11.27 |
| botan_project | botan | 1.11.28 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References