]> git.ipfire.org Git - thirdparty/Python/cpython.git/commit
[3.12] gh-108310: Fix CVE-2023-40217: Check for & avoid the ssl pre-close flaw (...
authorŁukasz Langa <lukasz@langa.pl>
Tue, 22 Aug 2023 19:03:20 +0000 (21:03 +0200)
committerGitHub <noreply@github.com>
Tue, 22 Aug 2023 19:03:20 +0000 (21:03 +0200)
commit256586ab8776e4526ca594b4866b9a3492e628f1
tree51a42bb9c4a541778b29ed0d84cde79414e54362
parent1dbf11814f32c7d4c1fc66cb0a29aa3667962b0d
[3.12] gh-108310: Fix CVE-2023-40217: Check for & avoid the ssl pre-close flaw (#108316)

Instances of `ssl.SSLSocket` were vulnerable to a bypass of the TLS handshake
and included protections (like certificate verification) and treating sent
unencrypted data as if it were post-handshake TLS encrypted data.

The vulnerability is caused when a socket is connected, data is sent by the
malicious peer and stored in a buffer, and then the malicious peer closes the
socket within a small timing window before the other peers’ TLS handshake can
begin. After this sequence of events the closed socket will not immediately
attempt a TLS handshake due to not being connected but will also allow the
buffered data to be read as if a successful TLS handshake had occurred.

Co-authored-by: Gregory P. Smith [Google LLC] <greg@krypto.org>
Lib/ssl.py
Lib/test/test_ssl.py
Misc/NEWS.d/next/Security/2023-08-22-17-39-12.gh-issue-108310.fVM3sg.rst [new file with mode: 0644]