![]() |
More SSL bugs found
Quote:
|
Re: More SSL bugs found
That's quite a list.
|
Re: More SSL bugs found
Quote:
|
Re: More SSL bugs found
When software writers don't bother to bound check pointers there will be loads of these kinds of loopholes, especially if the pointer is being computed from incoming data. The BOFH will always find a way so check for it.
How many Windoze patches are of the form: "Buffer overrun allows remote execution of code"? |
Re: More SSL bugs found
Quote:
|
Re: More SSL bugs found
Oh FFS. All these SSL vulnerabilities are becoming such a pain that I'm contemplating just yanking OpenSSL off all my servers completely.
Except those dealing with patient data which will still need some form of security... Which reminds me, I ought to bug the developers about that one... Then again, it looks like the industry is finally paying attention to proper testing and auditing of the OpenSSL codebase since Heartbleed, instead of just using it willy-nilly and contributing nothing back. |
| All times are GMT. The time now is 16:53. |
Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
All Posts and Content are © Cable Forum