Travis Cross 8b496f976e Mitigate the CRIME TLS flaw
If an attacker can cause a device to make an authenticated request to
a service via TLS while including a payload of the attacker's choice
in that request, and if TLS compression is enabled, the attacker can
uncover the plaintext authentication information by making a series of
guesses and observing changes in the length of the ciphertext.

This is CVE-2012-4929.

FS-6360 --resolve

Thanks-to: Brian West <brian@freeswitch.org>
2014-03-16 16:07:02 +00:00
..
2013-12-21 16:50:09 -06:00
2014-02-16 10:19:07 -06:00
2014-02-12 15:25:54 -06:00
2013-07-15 16:58:14 -05:00
2013-12-21 16:50:09 -06:00
2012-12-20 20:21:43 -06:00
2014-02-12 15:25:54 -06:00
2014-02-12 15:25:54 -06:00
2013-12-21 16:50:09 -06:00
2013-06-07 07:26:10 +00:00
2014-02-12 15:25:54 -06:00
2014-03-16 16:07:02 +00:00
2014-01-27 06:19:26 +05:00
2014-02-12 15:25:54 -06:00
2014-01-28 11:50:27 -05:00
2013-07-27 03:39:38 +00:00