The TLS engine in Kwik commit 745fd4e2 does not track the current state of the connection. This vulnerability can allow Client Hello messages to be overwritten at any time, including after a connection has been established.
Metrics
Affected Vendors & Products
References
History
Thu, 13 Feb 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ptrd
Ptrd kwik |
|
CPEs | cpe:2.3:a:ptrd:kwik:*:*:*:*:*:*:*:* | |
Vendors & Products |
Ptrd
Ptrd kwik |
|
Metrics |
ssvc
|
Thu, 22 Aug 2024 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-372 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T15:47:02.992Z
Reserved: 2024-01-11T00:00:00.000Z
Link: CVE-2024-22590

Updated: 2024-08-01T22:51:11.067Z

Status : Awaiting Analysis
Published: 2024-05-28T16:15:12.573
Modified: 2024-11-21T08:56:28.390
Link: CVE-2024-22590

No data.