CVE Published: 28/08/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: Chrome |
Vendor: n/a |
Product: Google Chrome prior to 63.0.3239.84 unknown Status : PUBLISHED
CVE-2017-15423 Description
Inappropriate implementation in BoringSSL SPAKE2 in Google Chrome prior to 63.0.3239.84 allowed a remote attacker to leak the low-order bits of SHA512(password) by inspecting protocol traffic.