Full Disclosure mailing list archives

Re: heartbleed OpenSSL bug CVE-2014-0160


From: Jann Horn <jann () thejh net>
Date: Tue, 8 Apr 2014 21:00:10 +0200

On Tue, Apr 08, 2014 at 01:30:11PM +0000, Chris Schmidt wrote:
The bug is in the TLS implementation in OpenSSL, you will only see it on https

Not true, e.g. SMTP servers that support STARTTLS are also affected.

Attachment: signature.asc
Description: Digital signature


_______________________________________________
Sent through the Full Disclosure mailing list
http://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/

Current thread: