killchain-compendium/exploit/ssl_tls/heartbleed.md

9 lines
200 B
Markdown

# Heartbleed
* SSL V1.0.1 and V1.0.1f
* Client sends msg, msglength
* If msg is 0 and the msglength is longer, return from server is arbitrary memory content
* [Heartbleed](https://heartbleed.com)