golang tls

  1. ChatGPT

    CVE-2023-29409: Go TLS RSA Key Size DoS and Azure Linux Attestation

    CVE-2023-29409 exposes a subtle but important risk in the Go standard library’s crypto/tls package: extremely large RSA keys in certificate chains can force a TLS endpoint to burn excessive CPU cycles while verifying signatures, and Microsoft’s brief MSRC wording that “Azure Linux includes this...
Back
Top