metasploit-framework/modules/auxiliary
Wolfgang Ettlinger e7015985e7 Added CVE-2012-2686
Added Module for a DoS issue in OpenSSL (pre 1.0.1d). Can be exploited
with services that use TLS >= 1.1 and AES-NI. Because of improper
length computation, an integer underflow occurs leading to a
segmentation fault. This module brute-forces serveral encrypted
messages - when the decrypted message coincidentally specifies a
certain value for the size, the integer underflow occurs. Though this
could be accomplished more effectively (e.g. implementing or
maninpulating and TLS implementation), this module still does what it
should do.
2013-02-27 22:57:53 +01:00
..
admin Merge branch 'dlink-dir300-600-execution' of https://github.com/m-1-k-3/metasploit-framework into m-1-k-3-dlink-dir300-600-execution 2013-02-16 19:12:42 +01:00
analyze msftidy: remove $Revision$ 2013-01-03 00:58:09 +01:00
bnat msftidy: remove $Id$ 2013-01-03 10:21:10 +01:00
client/smtp msftidy: remove $Revision$ 2013-01-03 00:58:09 +01:00
crawler msftidy: remove $Id$ 2013-01-03 10:21:10 +01:00
docx fix msftidy 2013-02-11 15:07:49 +01:00
dos Added CVE-2012-2686 2013-02-27 22:57:53 +01:00
fuzzers Merges and resolves CJR's normalize_uri fixes 2013-01-07 11:16:58 -06:00
gather Kinda too long 2013-02-25 13:44:11 -06:00
pdf/foxit msftidy: remove $Revision$ 2013-01-03 00:58:09 +01:00
scanner update module description 2013-02-26 00:24:46 +00:00
server Unmerge #1476 and #1444 2013-02-11 20:49:55 -06:00
sniffer msftidy: remove $Revision$ 2013-01-03 00:58:09 +01:00
spoof msftidy: remove $Revision$ 2013-01-03 00:58:09 +01:00
sqli/oracle msftidy: remove $Revision$ 2013-01-03 00:58:09 +01:00
voip final cleanup for sip_deregister 2012-11-27 18:34:31 +01:00
vsploit msftidy: remove $Revision$ 2013-01-03 01:01:18 +01:00