Quantcast
Channel: Apache Timeline
Viewing all articles
Browse latest Browse all 5648

New SSL/TLS vulnerabilities in Apache CXF

$
0
0
Two new security vulnerabilities are announced in Apache CXF that are fixed
in the latest 3.0.3 and 2.7.14 releases:

a) Note on CVE-2014-3566 - SSL 3.0 support in Apache CXF, aka the "POODLE"
attack

b) CVE-2014-3577: Apache CXF SSL hostname verification bypass

Both advisories are available here:
http://cxf.apache.org/security-advisories.html

Colm.

Talend Community Coder
http://coders.talend.com

Viewing all articles
Browse latest Browse all 5648

Trending Articles