This dangerous OpenSSL vulnerability can easily be triggered | CVE-2022-2274 Explained
Manage episode 334455930 series 1954062
We discuss the CVE-2022-2274 OpenSSL Vulnerability.
The OpenSSL 3.0.4 release introduced a serious bug in the RSA
implementation for X86_64 CPUs supporting the AVX512IFMA instructions.
This issue makes the RSA implementation with 2048 bit private keys
incorrect on such machines and memory corruption will happen during
the computation. As a consequence of the memory corruption an attacker
may be able to trigger a remote code execution on the machine performing
3:00 AVX512IFMA CISC
5:00 How the bug works
7:10 How can it be triggered
Fundamentals of Networking for Effective Backends udemy course (link redirects to udemy with coupon)