OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted

A High-severity OpenSSL flaw can leak heap memory to the other side of a DTLS connection or crash the program, OpenSSL said on September 29 as it released fixes.

DTLS, the TLS variant used for UDP traffic, resends a handshake message if no reply arrives before the timer expires. The leak or crash can happen when such a resend starts while a larger handshake message is stuck part-way

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Flume Water Monitor 915 MHz Security Is Pretty Good

Flume Water Monitor 915 MHz Security Is Pretty Good Source: Hacker News

RubyLLM: A single, beautiful Ruby framework for all major AI providers

RubyLLM: A single, beautiful Ruby framework for all major AI providers Source: Hacker News

Apple raises prices of MacBooks, iPads

Apple raises prices of MacBooks, iPads Source: Hacker News