Vulnerability Bulletins |
DSA-3255 zeromq3 - security update |
|
| Affected software | Debian |
|
It was discovered that libzmq, a lightweight messaging kernel, issusceptible to a protocol downgrade attack on sockets using the ZMTP v3protocol. This could allow remote attackers to bypass ZMTP v3 securitymechanisms by sending ZMTP v2 or earlier headers. More info: https://www.debian.org/security/2015/dsa-3255 |
|






