CVE-2017-1000415: Matrixssl

Medium severity, CVSS 5.9. EPSS: 0.5% chance of exploitation in the next 30 days.

MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation in its X.509 certificate validation process resulting in some certificates have their expiration (beginning) year extended (delayed) by 100 years.

Affected products

Published 2018-01-09. Last modified 2026-06-17.