0. çãã¾ã¨ã OpenSSL-1.1.0dã«èå¼±æ§(CVE-2017-3733)ãè¦ã¤ãããEncrypt-Then-Mac 㨠renegotiation ãçµã¿åãã㦠crashããããã¨ãã§ãã¾ããã ãã®èå¼±æ§ã¯ãä»æ§ã®æºæ ä¸è¶³ãä¸é©åãªå¤æ°ã® cast ãªã©ãåå ã§ããã TLS1.3ã§ã¯ããããè½ã¨ãç©´ãå°ãªããªãããæ©è½ã®æ ¹æ¬çãªè¦ç´ããè¡ããã¦ãã¾ãã 1. ã¯ããã« å é± OpenSSL-1.1.0d ã«å¯¾ãã¦ã»ãã¥ãªãã£ã¢ãããã¼ããããã Encrypt-Then-Mac renegotiation crash (CVE-2017-3733)ã¨ããèå¼±æ§(Severity: High)ãå ¬éããã¾ããã 対象ã¨ãªã£ã 1.1.0 ã¯ãæ¨å¹´2016å¹´8æã«ãªãªã¼ã¹ãããOpenSSLã®æ°ãããªãªã¼ã¹ãã©ã³ãã§ãã1.1.0ã§ã¯APIã®å¤§å¹ å¤æ´ããããã¾ã ãã¾ãæ®å
![OpenSSLã®èå¼±æ§(CVE-2017-3733)ã«è¦ãããä»æ§ã¨castã®è½ã¨ãç©´ - ã¼ã¡ã¼ã¡æ¥è¨](https://cdn-ak-scissors.b.st-hatena.com/image/square/31ee881af5b6dedf0feff8824d70867326ec7ca0/height=288;version=1;width=512/https%3A%2F%2Fcdn-ak.f.st-hatena.com%2Fimages%2Ffotolife%2Fj%2Fjovi0608%2F20170220%2F20170220113615.jpg)
{{#tags}}- {{label}}
{{/tags}}