[ Date Index ]
[ Thread Index ]
[ <= Previous by date /
thread ]
[ Next by date /
thread => ]
Re: [LUG] OpenSSL 1.0.1 "Heartbleed" vulnerability
- To: list@xxxxxxxxxxxxx
- Subject: Re: [LUG] OpenSSL 1.0.1 "Heartbleed" vulnerability
- From: Martijn Grooten <martijn@xxxxxxxxxxxxxxxxxx>
- Date: Tue, 8 Apr 2014 16:26:01 +0000
- Content-disposition: inline
- Delivered-to: dclug@xxxxxxxxxxxxxxxxxxxxx
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=dcglug.org.uk; s=1396810045; h=Sender:Content-Transfer-Encoding:Content-Type:List-Subscribe:List-Help:List-Post:List-Unsubscribe:List-Id:Reply-To:Subject:In-Reply-To:MIME-Version:References:Message-ID:To:From:Date; bh=t985IRzMvjohIlEnfvUAsuGViR3gXEORgsMpt8qY2n8=; b=0o0RXN62EMMVSpLHzKesSxgVTn86eVqkcthIQOGCAeEIC0lC0W3qzwAU4K22rNEbEfp95Ki4RBayASNb2TQ1WZ4ZClAKTaLUUPyuVxoxLYeGIB2I93YLJ0YGiKxB9I1clWU9q33wvopmHq4Syz/Ow4LF5aU617rl+My0ixOifmA=;
- Dkim-signature: v=1; a=rsa-sha256; c=simple/simple; d=lapsedordinary.net; s=mail; t=1396974361; bh=V39DYaPhcitTtNggnJ6bCiptVV/PP3ZTA17neaIlbOw=; h=Date:From:To:Subject:Message-ID:References:MIME-Version: Content-Type:In-Reply-To; b=MD49M/b7HM5srpiuntNrekDnyF8O9+xoH3JsHUKIT7XodtElqLOYiUqvxVrs2/BCH ZG2R1c85x6LslQxKlNMGCTpg1KanesRsUW17q0hLicpiQU0ykdMAhyUzE229QsP8ld sRfJYLoeTHRaw2iurkyxF0G6xXop1rInOAdroVvo=
On Tue, Apr 08, 2014 at 05:04:27PM +0100, bad apple wrote:
> Gah... that was entirely my fault: between noscript and request-policy,
> I hadn't seen it (it wasn't loading) on the page. Had to enable some
> blogger* cross domain requests and up it popped. Sorry about that.
Here's an actual proof-of-concept: https://www.mattslifebytes.com/?p=533
It works.
Martijn.
--
The Mailing List for the Devon & Cornwall LUG
http://mailman.dclug.org.uk/listinfo/list
FAQ: http://www.dcglug.org.uk/listfaq