Forum Moderators: travelin cat
Serious vulnerability found in SSL/TLS on OS X Mavericks and iOS, easily exploitable
On Friday, Apple revealed a significant bug in their SSL/TLS implementation:
Impact: An attacker with a privileged network position may capture or modify data in sessions protected by SSL/TLS
Description: Secure Transport failed to validate the authenticity of the connection. This issue was addressed by restoring missing validation steps.