Description
Sliver from v1.5.x to v1.5.39 has an improper cryptographic implementation, which allows attackers to execute a man-in-the-middle attack via intercepted and crafted responses.
References
github.com/tangent65536/Slivjacker
github.com/advisories/GHSA-8jxm-xp43-qh3q
github.com/BishopFox/sliver/releases/tag/v1.5.40
www.chtsecurity.com/.../04f41dcc-1851-463c-93bc-551323ad8091
github.com/tangent65536/Slivjacker
github.com/advisories/GHSA-8jxm-xp43-qh3q
github.com/BishopFox/sliver/releases/tag/v1.5.40
www.chtsecurity.com/.../04f41dcc-1851-463c-93bc-551323ad8091