Please find the details about the issue "LUCKY13 (CVE-2013-0169), experimental potentially VULNERABLE, uses cipher block chaining (CBC) ciphers with TLS. Check patches" while openssl version seems to have fixed it.
- testssl version from the banner (testssl.sh -b 2>/dev/null | head -4 | tail -2)
2.9dev from https://testssl.sh/dev/
- what exactly was happening, output is needed
LUCKY13 (CVE-2013-0169), experimental potentially VULNERABLE, uses cipher block chaining (CBC) ciphers with TLS. Check patches
- what did you expect instead?
LUCKY13 Not vulnerable
- steps to reproduce
- testssl.sh command line
./testssl.sh :
- openssl version used (testssl.sh -b 2>/dev/null | head -16 | tail -3)
OpenSSL 1.0.1e-fips 11 Feb 2013
- your operating system (uname -a)
Linux GNU/Linux
-Thanks
Samvedna
Please find the details about the issue "LUCKY13 (CVE-2013-0169), experimental potentially VULNERABLE, uses cipher block chaining (CBC) ciphers with TLS. Check patches" while openssl version seems to have fixed it.
2.9dev from https://testssl.sh/dev/
LUCKY13 (CVE-2013-0169), experimental potentially VULNERABLE, uses cipher block chaining (CBC) ciphers with TLS. Check patches
LUCKY13 Not vulnerable
./testssl.sh :
OpenSSL 1.0.1e-fips 11 Feb 2013
Linux GNU/Linux
-Thanks
Samvedna