CVE-2020-12872
15.05.2020, 19:15
yaws_config.erl in Yaws through 2.0.2 and/or 2.0.7 loads obsolete TLS ciphers, as demonstrated by ones that allow Sweet32 attacks, if running on an Erlang/OTP virtual machine with a version less than 21.0.Enginsight
Vendor | Product | Version |
---|---|---|
yaws | yaws | 2.0.2 ≤ 𝑥 ≤ 2.0.6 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References