Hello,
There is a missing CRL check on encrypting the messages using the
'cms/smime -encrypt' commands. Encrypting the message for the owner of a
compromised key is dangerous, so CRL check in these utilities will be
useful enough.
Thank you!
--
SY, Dmitry Belyavsky
_______________________________________________
openssl-bugs-mod mailing list
[email protected]
https://mta.openssl.org/mailman/listinfo/openssl-bugs-mod
_______________________________________________
openssl-dev mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev