Potential bug in TLS 1.3 implementation

Petter Sælen petters at hey.com
Wed Mar 3 10:09:37 UTC 2021


Hi

I found an enum that seems to have mismatched string representations.
It concerns TLS extension client_certificate_type (19) and padding (21).

See line 277 and 281 here:
https://hg.openjdk.java.net/jdk/jdk/file/ee1d592a9f53/src/java.base/share/classes/sun/security/ssl/SSLExtension.java

Or see attached screenshot


Is this the right place send this?

Best regards
Petter Sælen
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mail.openjdk.org/pipermail/security-dev/attachments/20210303/c65fb917/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Screenshot 2021-03-03 104230.png
Type: image/png
Size: 146501 bytes
Desc: not available
URL: <https://mail.openjdk.org/pipermail/security-dev/attachments/20210303/c65fb917/Screenshot2021-03-03104230.png>


More information about the security-dev mailing list