{
    "file_item": {
        "filepath": "security-advisories",
        "filename": "CERT-EU-SA2014-169.txt"
    },
    "title": "NEW SSLv3 Padding Oracle On Downgraded Legacy Encryption attack",
    "serial_number": "2014-169",
    "publish_date": "20-11-2014 09:09:00",
    "description": "The SSL protocol 3.0, as used in OpenSSL and other products, uses non-deterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain clear text data via a padding-oracle attack, aka the \"POODLE\" issue.",
    "url_title": "2014-169",
    "content_markdown": null,
    "content_html": null,
    "licence": {
        "title": "Creative Commons Attribution 4.0 International (CC-BY 4.0)",
        "link": "https://creativecommons.org/licenses/by/4.0/",
        "restrictions": "https://cert.europa.eu/legal-notice",
        "author": "The Cybersecurity Service for the Union institutions, bodies, offices and agencies"
    }
}