Technical Analysis Of The GnuTLS Hello Vulnerability(radare.today)
radare.today
Technical Analysis Of The GnuTLS Hello Vulnerability
http://radare.today/technical-analysis-of-the-gnutls-hello-vulnerability/
4 comments
Thanks for the clarification, I was wondering about this!
I hope to someday reach the level of expertise the author of this post has... for now, though, I think I'll stick to playing CTFs.
Fantastic work, even if (s)he didn't find the vulnerability her-/himself.
Fantastic work, even if (s)he didn't find the vulnerability her-/himself.
404 not found now?
Awesome!
This statement gives the impression that the code was quietly fixed without disclosing the vulnerability. In reality, the fix was done on 5/23, but it was not rebased and committed to the public repo until the bug was formally announced and the updated releases were ready: