Sploitus

Exploit for Inadequate Encryption Strength in Openssl

githubexploit Β· 2014-07-15

Exploit Code

README12 lines
## https://sploitus.com/exploit?id=1600DF26-0A75-5ACB-BAB0-4F8784A23961
Adam Langley's tool for testing for OpenSSL CVE-2014-0224,
originally published here: https://www.imperialviolet.org/2014/06/05/earlyccs.html

To build the tool:

    $ export GOPATH=$(pwd)
    $ go build openssl-ccs-cve-2014-0224.go

Tested with go 1.2.2 and 1.3.

The src/my-tls directory contains the patched version of the crypto/tls package.