CVE-2021-3449 OpenSSL Denial of Service Vulnerability

From PwnWiki
Revision as of 11:02, 29 April 2021 by LovelyWei (talk | contribs) (Created page with "openssl versions below 1.1.1-k, maliciously constructed requests using openssl software (including nginx and trojan-gfw, etc.) in the default configuration can crash the server.")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Other languages:
Chinese • ‎English • ‎español • ‎русский • ‎中文(中国大陆)‎ • ‎中文(台灣)‎


Vulnerability Impact

< 1.1.1-k

Vulnerability information

openssl versions below 1.1.1-k, maliciously constructed requests using openssl software (including nginx and trojan-gfw, etc.) in the default configuration can crash the server.

POC

https://github.com/terorie/cve-2021-3449