OpenSSL是OpenSSL团队的一个开源的能够实现安全套接层(SSLv2/v3)和安全传输层(TLSv1)协议的通用加密库。该产品支持多种加密算法,包括对称密码、哈希算法、安全散列算法等。 OpenSSL 3.0.0 到 3.0.6版本存在安全漏洞,该漏洞源于在 X.509 证书验证中可以触发缓冲区溢出,特别是在名称约束检查中,攻击者利用该漏洞可以导致服务崩溃(导致拒绝服务)或潜在的远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Operational information regarding CVE-2022-3602 and CVE-2022-3786, two vulnerabilities in OpenSSL 3 | https://github.com/NCSC-NL/OpenSSL-2022 | POC Details |
| 2 | None | https://github.com/colmmacc/CVE-2022-3602 | POC Details |
| 3 | None | https://github.com/eatscrayon/CVE-2022-3602-poc | POC Details |
| 4 | cve-2022-3602 poc | https://github.com/attilaszia/cve-2022-3602 | POC Details |
| 5 | SpookySSL CVE-2022-3602 SSLv3 Scanner for Windows, Linux, macOS | https://github.com/alicangnll/SpookySSL-Scanner | POC Details |
| 6 | None | https://github.com/rbowes-r7/cve-2022-3602-and-cve-2022-3786-openssl-poc | POC Details |
| 7 | Detects attempts at exploitation of CVE-2022-3602, a remote code execution vulnerability in OpenSSL v 3.0.0 through v.3.0.6 | https://github.com/corelight/CVE-2022-3602 | POC Details |
| 8 | None | https://github.com/cybersecurityworks553/CVE-2022-3602-and-CVE-2022-3786 | POC Details |
No public POC found.
Login to generate AI POCNo comments yet