frank
Goto Top

Heartbleed OpenSSL (CVE-2014-0160) - Informationen über die Sicherheitslücke

Hier findet ihr alle relevanten Informationen über die neue OpenSSL-Sicherheitslücke mit dem Namen "Heartbleed".

Gruß
Frank

http://heartbleed.com/

Content-Key: 234862

Url: https://administrator.de/contentid/234862

Printed on: April 25, 2024 at 04:04 o'clock

Member: aqui
aqui Apr 10, 2014 at 13:12:34 (UTC)
Goto Top
Röchel....administrator.de ist sauber !

root@raspi:/home/pi# python hb-test.py www.administrator.de
Connecting...
Sending Client Hello...
Waiting for Server Hello...
... received message: type = 22, ver = 0302, length = 58
... received message: type = 22, ver = 0302, length = 3242
... received message: type = 22, ver = 0302, length = 4
Sending heartbeat request...
Unexpected EOF receiving record header - server closed connection
No heartbeat response received, server likely not vulnerable

und
root@raspi:/home/pi# ./check-ssl.pl www.administrator.de:https
...ssl received type=22 ver=0x302 ht=0x2 size=54
...ssl received type=22 ver=0x302 ht=0xb size=3238
...ssl received type=22 ver=0x302 ht=0xe size=0
...send heartbeat#1
no reply - probably not vulnerable