WhisperX tag archive

#name constraints

This page collects WhisperX intelligence signals tagged #name constraints. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-04-23 00:54:11 · GitHub Issues

1. rustls-webpki Flaw Accepted Unauthorized URI Name Constraints in Certificate Validation

A validation defect in the rustls-webpki cryptographic library allowed name constraints for URI names to be incorrectly accepted, potentially opening a path for certificate misissuance exploitation in TLS handshake contexts. The vulnerability, tracked as RUSTSEC-2026-0098 and linked to GHSA-965h-392x-2mh5, was discover...

The Lab · 2026-04-23 00:54:12 · GitHub Issues

2. rustls-webpki Wildcard Certificate Validation Flaw Bypasses Name Constraints in Security Patch Gap

A validation vulnerability in `rustls-webpki` versions prior to 0.103.12 and certain 0.104.0-alpha releases allows wildcard DNS certificates to escape permitted subtree name constraints, potentially enabling certificate misissuance beyond intended restrictions. The flaw, tracked as GHSA-xgp8-3hg3-c2mh, stems from the l...