Technical analysis of HollowByte: OpenSSL’s latest memory exhaustion DoS
|
OpenSSL has addressed HollowByte, a denial-of-service vulnerability that abuses protocol processing to consume server memory. The article breaks down the underlying bug, why it results in unbounded memory growth, the affected releases and practical considerations for defenders evaluating their exposure. submitted by /u/NapierPalm |