{ "id": "openEuler-SA-2023-1912", "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2023-1912", "title": "An update for erlang is now available for openEuler-22.03-LTS", "severity": "Critical", "description": "Erlang is a general-purpose programming language and runtime environment. Erlang has built-in support for concurrency, distribution and fault tolerance. Erlang is used in several large telecommunication systems from Ericsson.\r\n\r\nSecurity Fix(es):\r\n\r\nIn Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before 25.0.2, there is a Client Authentication Bypass in certain client-certification situations for SSL, TLS, and DTLS.(CVE-2022-37026)", "cves": [ { "id": "CVE-2022-37026", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-37026", "severity": "Critical" } ] }