oss-sec mailing list archives

Re: [CVE-2020-28018] Use-After-Free on Exim Question


From: Solar Designer <solar () openwall com>
Date: Tue, 11 May 2021 13:40:17 +0200

Hi,

Replying as a list moderator:

On Tue, May 11, 2021 at 01:23:43PM +0200, null p0int3r wrote:
I have a question to the Qualys researchers that discovered and
successfully achieved RCE on CVE-2020-28018 (Use-After-Free vulnerability
on tls-openssl.c).

This question is nor avisory related nor vulnerability discovery but about
exploitation, so I am not sure if it is on the scope of this mailing list.

Yes, this is in scope.  So if anyone (not only the Qualys researchers)
wants to reply for real, please feel free.

Alexander


Current thread: