blob: 296eb1647dc41afacb07fe49656ec3ef557129c4 [file] [view]
# OpenSSL Advisory: July 14th, 2023 (BoringSSL Not Affected)
OpenSSL have published a [security advisory](https://www.openssl.org/news/secadv/20230714.txt). Here's how it affects BoringSSL:
CVE | Summary | [Severity] in OpenSSL | Impact to BoringSSL
----|---------|-----------------------|---------------------
CVE-2023-2975 | AES-SIV implementation ignores empty associated data entries | Low | Not affected; BoringSSL does not implement AES-SIV
[Severity]: https://openssl-library.org/policies/general/security-policy/index.html#issue-severity