Mandriva Linux Security Advisory 2014-166 - Ben Reser discovered that serf did not correctly handle SSL certificates with NUL bytes in the CommonName or SubjectAltNames fields. A remote attacker could exploit this to perform a man in the middle attack to view sensitive information or alter encrypted communications.
12079b09a2f77f4dd2d0d59a4ecbb786e81a328e62175d579ca8fa9038067cf5