Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Tue, 11 May 2021 13:40:17 +0200
From: Solar Designer <solar@...nwall.com>
To: null p0int3r <nullp0int3rx@...il.com>
Cc: oss-security@...ts.openwall.com
Subject: Re: [CVE-2020-28018] Use-After-Free on Exim Question

Hi,

Replying as a list moderator:

On Tue, May 11, 2021 at 01:23:43PM +0200, null p0int3r wrote:
> I have a question to the Qualys researchers that discovered and
> successfully achieved RCE on CVE-2020-28018 (Use-After-Free vulnerability
> on tls-openssl.c).
> 
> This question is nor avisory related nor vulnerability discovery but about
> exploitation, so I am not sure if it is on the scope of this mailing list.

Yes, this is in scope.  So if anyone (not only the Qualys researchers)
wants to reply for real, please feel free.

Alexander

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.