Sploitus

Exploit for OpenSSL OCSP Status Request Extension Unbounded Memory Growth Vulnerability

zdt Β· 2016-10-21

Exploit Code

MARKDOWN5 lines
## https://sploitus.com/exploit?id=1337DAY-ID-25942
Multiple memory leaks in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0  before 1.1.0a allow remote attackers to cause a denial of service (memory consumption) via large OCSP Status Request extensions.The exploit allows to take advantage of this vulnerability. When successfully exploited, the vulnerability causes the server to crash or slow down.#### Usage Info
See description inserted into the exploit code or http://www.dailymotion.com/video/x4yewbs_cve-2016-6304_tech

This is private exploit. You can buy it at https://0day.today