RFR: 8331682: Slow networks/Impatient clients can potentially send unencrypted TLSv1.3 alerts that won't parse on the server [v3]

Bernd duke at openjdk.org
Sat Sep 21 17:45:35 UTC 2024


On Sat, 21 Sep 2024 00:37:51 GMT, Artur Barashev <duke at openjdk.org> wrote:

> It was an encrypted message while client expected a plaintext, we weren't misled by `plaintext` in the exception message.

In that case the title of the issue is wrong. (And also the message of the exception does not match „it was encrypted“

-------------

PR Comment: https://git.openjdk.org/jdk/pull/21043#issuecomment-2365265497


More information about the security-dev mailing list