THE article discusses a critical vulnerability in OpenSSL known as the HollowByte flaw, which permits freezing of server memory through specific TLS requests. This issue poses significant risks to server security and stability, highlighting the need for immediate attention and remediation by organizations utilizing OpenSSL in their systems. Emphasis is placed on the importance of maintaining up-to-date security practices to prevent exploitation of such vulnerabilities.
OpenSSL HollowByte flaw freezes server memory via TLS requests
CyberSIXT Evidence Panel
Source marked as original reporting
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
HollowByte bug lets attackers crash OpenSSL with 11-byte payload
securityweek.com
-
OpenSSL HollowByte flaw lets 11 byte attacks crash NGINX, Apache
securityonline.info
-
OpenSSL's HollowByte flaw lets tiny payload crash servers
securityaffairs.com
-
OpenSSL HollowByte flaw freezes server memory via TLS requests
thehackernews.com