Please create an account to participate in the Slashdot moderation system


Forgot your password?
Slashdot Deals: Deal of the Day - Pay What You Want for the Learn to Code Bundle, includes AngularJS, Python, HTML5, Ruby, and more. ×

Submission + - Six new OpenSSL vulnerabilities addressed (

dachshund writes: "Six new vulnerabilities have been addressed in OpenSSL. The most serious is a timing-based attack against Datagram TLS, capable of completely recover the plaintext from encrypted messages. This flaw was discovered by Nadhem Alfardan and Kenny Paterson at Royal Holloway University. The remaining attacks deal with potential denial of service issues, as well as bug that could potentially leak fragments of memory over the Internet due to the use of an uninitialized buffer. This puts the cap on a year of TLS vulnerabilities headlined by the recent BEAST attack."

The trouble with money is it costs too much!