OpenSSL have published a security advisory. Here's how it affects BoringSSL:
| CVE | Summary | Severity in OpenSSL | Impact to BoringSSL |
|---|---|---|---|
| CVE-2024-12797 | RFC7250 handshakes with unauthenticated servers don't abort as expected | High | Not affected; issue was introduced after fork |