Skip to content

[11.2.4] Hotfix & Stable Release

Choose a tag to compare

@muskan124947 muskan124947 released this 15 Oct 11:23
9641938

Fixed issues

  • Address a hostname validation vulnerability by securely parsing certificate common names. #2800
    What was fixed: Secure hostname validation is enforced by replacing the vulnerable CN parsing logic in SQLServerCertificateUtils.java, preventing spoofing attacks.
    Who benefits: All users of the SQL Server JDBC driver, especially those relying on TLS for secure connections, benefit from improved certificate validation.