blob: 647d2e26795a3e09e0ccd790af073e6bdfa33787 [file] [view]
# OpenSSL Advisory: October 16th, 2024 (BoringSSL Not Affected)
OpenSSL have published a [security advisory](https://openssl-library.org/news/secadv/20241016.txt). Here's how it affects BoringSSL:
CVE | Summary | [Severity] in OpenSSL | Impact to BoringSSL
----|---------|-----------------------|---------------------
CVE-2024-9143 | Low-level invalid GF(2^m) parameters lead to OOB memory access | Low | Not affected; code was removed when BoringSSL forked
[Severity]: https://openssl-library.org/policies/general/security-policy/index.html#issue-severity