Travis Cross 19fc943f59 Mitigate the CRIME TLS flaw
If an attacker can cause a device to make an authenticated request to
a service via TLS while including a payload of the attacker's choice
in that request, and if TLS compression is enabled, the attacker can
uncover the plaintext authentication information by making a series of
guesses and observing changes in the length of the ciphertext.

This is CVE-2012-4929.

FS-6360 --resolve

Thanks-to: Brian West <brian@freeswitch.org>
2014-03-16 16:24:58 +00:00
..
2014-03-13 13:00:10 -05:00
2014-03-09 14:46:06 -04:00
2014-03-08 08:51:58 -06:00
2014-03-07 19:26:17 -05:00
2014-03-07 18:36:26 -05:00
2014-03-07 19:19:53 -05:00
2013-12-16 11:54:15 -05:00
2014-03-07 20:05:50 -05:00
2014-03-07 19:35:51 -05:00
2014-02-12 12:08:56 -06:00
2012-04-04 16:18:53 -05:00
2014-02-12 12:08:56 -06:00
2012-09-16 14:21:30 -05:00
2014-03-07 18:36:26 -05:00
2014-03-07 18:36:26 -05:00
2014-03-07 18:36:26 -05:00
2014-03-16 16:24:58 +00:00
2014-03-07 18:36:26 -05:00
2014-03-07 18:36:12 -05:00
2014-03-09 14:15:16 -04:00
2014-03-07 18:36:26 -05:00