keyshare

  1. TLS 1.3 HRR Key Share Bug CVE-2026-2673: Interop Failures and Fixes

    A subtle but consequential TLS 1.3 implementation issue is circulating under the label CVE-2026-2673 — described as an OpenSSL behavior in which a TLS 1.3 server can select an unexpected key‑agreement group (and even place an unsupported group into the HelloRetryRequest/key_share exchange)...