CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 3.1. See the original NVD description below for full technical details.
CVE
CVE-2022-30629
Severity
LOW
CVSS
3.1
EPSS
0.90%
Original NVD Description
Non-random values for ticket_age_add in session tickets in crypto/tls before Go 1.17.11 and Go 1.18.3 allow an attacker that can observe TLS handshakes to correlate successive connections by comparing ticket ages during session resumption.
Related CVEs
Other vulnerabilities affecting the same vendor(s)