CVE-2021-3449 OpenSSL拒绝服务漏洞

From PwnWiki
Revision as of 10:13, 31 May 2021 by L0snight (talk | contribs) (Created page with "==漏洞信息==")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Other languages:
Chinese • ‎English • ‎español • ‎русский • ‎中文(中国大陆)‎ • ‎中文(台灣)‎


漏洞影响

< 1.1.1-k

漏洞信息

openssl版本低于 1.1.1-k,默认配置下使用 openssl 的软件(包括 nginx 和 trojan-gfw 等),恶意构造的请求可以让服务器崩溃。

POC

https://github.com/terorie/cve-2021-3449