+1
−0
+7
−3
Loading
If an application calls SSL_shutdown after a fatal alert has occured and
then behaves different based on error codes from that function then the
application may be vulnerable to a padding oracle.
CVE-2019-1559
Reviewed-by:
Richard Levitte <levitte@openssl.org>