CVE-2014-8627

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
24/11/2014
Last modified:
12/04/2025

Description

PolarSSL 1.3.8 does not properly negotiate the signature algorithm to use, which allows remote attackers to conduct downgrade attacks via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:polarssl:polarssl:1.3.8:*:*:*:*:*:*:*