CVE-2017-17689
Published May 16, 2018The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.
- evidence mentions
- 2
- Buzz score
- 17.5
Vendor/product archive
1 CVEs tagged to google / gmail — 0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.