Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.19, and 12.0 before build 53.22 allow remote attackers to obtain sensitive information from the backend client TLS handshake by leveraging use of TLS with Client Certificates and a Diffie-Hellman Ephemeral (DHE) key exchange.
References
Link Resource
http://www.securityfocus.com/bid/102177 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1040011 Third Party Advisory VDB Entry
https://support.citrix.com/article/ctx230612 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2017-12-13T16:00:00

Updated: 2017-12-14T10:57:01

Reserved: 2017-12-11T00:00:00


Link: CVE-2017-17549

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-12-13T16:29:00.393

Modified: 2018-01-05T13:56:13.383


Link: CVE-2017-17549

JSON object: View

cve-icon Redhat Information

No data.

CWE