Full Disclosure mailing list archives
Re: heartbleed OpenSSL bug CVE-2014-0160
From: Aidan Thornton <makosoft () gmail com>
Date: Wed, 9 Apr 2014 22:08:51 +0100
On Wed, Apr 9, 2014 at 8:52 PM, Jeremy Voorhis <jvoorhis () gmail com> wrote:
I just read an article titled "Why heartbleed doesn't leak the private key" and the claim seems irresponsible and overly broad. Can anyone comment on his analysis? http://blog.erratasec.com/2014/04/why-heartbleed-doesnt-leak-private-key.html#.U0WjNK1dWBg
Pretty sure it's basically wrong about everything. "memory containing the private key is never freed, and hence allocated heartbleed buffers can never contain it"? What about all the buffers that are only needed when loading the key from .pem format and can be freed afterwards? What's more, even if no memory containing the private key was ever freed that's still not necessarily an obstacle - if we can get our buffer allocated earlier in RAM than the private key, OpenSSL is quite happy to copy data from past the end of the buffer. (The buffer length is - so far as I can tell, OpenSSL's hard to follow - the maximum TLS record length of 16KiB plus a few hundred bytes for crypto overhead. OpenSSL will send us up to 64KiB-1 from it, way past the buffer end; this doesn't comply with the specification, but neither does failing to check the length in the first place.) To be frank it's a rather irresponsible blog post. Also, I've obtained the private key (unreliably) from a local copy of Apache on Linux and it actually seems to be less effective with a freshly-started copy of Apache for whatever reason. Aidan _______________________________________________ Sent through the Full Disclosure mailing list http://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/
Current thread:
- Re: heartbleed OpenSSL bug CVE-2014-0160, (continued)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Justin Bull (Apr 08)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Fabien Bourdaire (Apr 09)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Reindl Harald (Apr 09)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Juergen Christoffel (Apr 09)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Reindl Harald (Apr 10)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Reindl Harald (Apr 11)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Seth Arnold (Apr 11)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Reindl Harald (Apr 09)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Brandon Perry (Apr 09)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Aidan Thornton (Apr 09)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Coderaptor (Apr 09)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Jann Horn (Apr 10)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Brandon Perry (Apr 10)
- Re: heartbleed OpenSSL bug CVE-2014-0160 David Tomaschik (Apr 10)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Ivan .Heca (Apr 10)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Michal Zalewski (Apr 10)
- Re: heartbleed OpenSSL bug CVE-2014-0160 Paul Vixie (Apr 10)