Tag
An in-depth explanation of TLS certificate validation on Linux, covering trust stores, chain building, and common pitfalls such as missing intermediates. The article clarifies why different tools may disagree on certificate validity.
A heap use-after-free vulnerability has been reported in the OpenSSL PKCS7_verify() function, potentially allowing attackers to exploit memory corruption.