Back to search
CVE-2023-23759
Published: May 18, 2023
Modified: Jan 21, 2025
PUBLISHED
Description
There is a vulnerability in the fizz library prior to v2023.01.30.00 where a CHECK failure can be triggered remotely. This behavior requires the client supported cipher advertisement changing between the original ClientHello and the second ClientHello, crashing the process (impact is limited to denial of service).
| Vendor | Product | Versions |
|---|---|---|
fizz | affected v0.0.0.0 - < v2023.01.30.00 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now