Android Security Team,
                                      Whenever untrusted certificate
is received when running TLS server on androd, DalvikVM Aborts, before
it can reach to catch block of Tls server's sslserver.accept() call .
If we run it as a client then it gives proper exception, but problem
is when we run it as server. It does

Its always reproducible.Just run a TLS server on android and connect
to with with untrusted client's certificate. DalvikVM crashes.

Hope you take up this issue to fix in next android release.

Swapnil


-- 
To unsubscribe, reply using "remove me" as the subject.

Reply via email to