CVE-2022-37026
21.09.2022, 14:15
In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before 25.0.2, there is a Client Authentication Bypass in certain client-certification situations for SSL, TLS, and DTLS.Enginsight
Vendor | Product | Version |
---|---|---|
erlang | erlang\/otp | 𝑥 < 23.3.4.15 |
erlang | erlang\/otp | 24.0 ≤ 𝑥 < 24.3.4.2 |
erlang | erlang\/otp | 25.0 ≤ 𝑥 < 25.0.2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
erlang |
|
References