blob: af94295959eb8e469fca54f4f41eeb8c7d5486da [file] [view]
# OpenSSL Advisory: February 11th, 2025 (BoringSSL Not Affected)
OpenSSL have published a [security advisory](https://openssl-library.org/news/secadv/20250211.txt). Here's how it affects BoringSSL:
CVE | Summary | [Severity] in OpenSSL | Impact to BoringSSL
----|---------|-----------------------|---------------------
CVE-2024-12797 | RFC7250 handshakes with unauthenticated servers don't abort as expected | High | Not affected; issue was introduced after fork
[Severity]: https://openssl-library.org/policies/general/security-policy/index.html#issue-severity