CVE-2017-1000417: Matrixssl
Medium severity, CVSS 5.3. EPSS: 0.6% chance of exploitation in the next 30 days.
MatrixSSL version 3.7.2 adopts a collision-prone OID comparison logic resulting in possible spoofing of OIDs (e.g. in ExtKeyUsage extension) on X.509 certificates.
Affected products
- Matrixssl Matrixssl: version 3.7.2 only
Published 2018-01-22. Last modified 2026-06-17.