| Summary | Issue summary: A malicious server can exploit TLS OCSP stapling by delivering Impact summary: Successful exploitation allows an attacker to corrupt heap If OCSP stapling is enabled and the TLS client connects to a malicious server, The OCSP stapling is not enabled by default. Reliable code execution No FIPS modules are affected by this issue as the affected code is outside |
|---|---|
| Publication Date | June 10, 2026, 2:17 a.m. |
| Registration Date | June 10, 2026, 4:16 a.m. |
| Last Update | June 10, 2026, 2:17 a.m. |