Authentication Bypass in LibreSSL and OpenBSD Products
CVE-2021-46880
9.8CRITICAL
What is CVE-2021-46880?
An authentication bypass vulnerability exists in LibreSSL and OpenBSD products due to an issue in the x509_verify.c component. This flaw arises because errors related to unverified certificate chains are occasionally ignored, enabling attackers to bypass authentication mechanisms. Users of impacted versions should apply necessary patches to mitigate potential security risks.