CVE-2016-7798 (NVD)

2017-01-30

The openssl gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism.

openssl - Tree: 8108e0a6db

(? files)

Filter Settings
Files
Navigation
Patch data:

(on by default)


Patched area: