blob: f19bf523eb5d4f4e9aeb81643b8498d7d7c44a55 [file] [log] [blame]
Ronald Cronc3e9abe2022-06-17 17:23:06 +02001Security
2 * Fix check of certificate key usage in TLS 1.3. The usage of the public key
3 provided by a client or server certificate for authentication was not
4 checked properly when validating the certificate. This could cause a
5 client or server to be able to authenticate itself through a certificate
6 to an Mbed TLS TLS 1.3 server or client while it does not own a proper
7 certificate to do so.