Security Advisory

CVE-2016-2850

7.5
HIGH

Vulnerability Description

Botan 1.11.x before 1.11.29 does not enforce TLS policy for (1) signature algorithms and (2) ECC curves, which allows remote attackers to conduct downgrade attacks via unspecified vectors.
Published Date May 13, 2016
Official Source NIST NVD Advisory