Travis Cross 19fc943f59 Mitigate the CRIME TLS flaw
If an attacker can cause a device to make an authenticated request to
a service via TLS while including a payload of the attacker's choice
in that request, and if TLS compression is enabled, the attacker can
uncover the plaintext authentication information by making a series of
guesses and observing changes in the length of the ciphertext.

This is CVE-2012-4929.

FS-6360 --resolve

Thanks-to: Brian West <brian@freeswitch.org>
2014-03-16 16:24:58 +00:00
..
2014-03-07 18:36:26 -05:00
2014-03-06 00:02:40 +05:00
2011-07-31 18:36:05 -05:00
2014-03-16 16:24:58 +00:00
2011-07-31 18:36:05 -05:00
2013-10-22 23:23:48 -05:00