EPISODE · Nov 7, 2022 · 33 MIN
Episode 348 - OpenSSL is the new lead paint
from Open Source Security
Josh and Kurt talk about the recent OpenSSL nothingburger. OpenSSL got everyone whipped into a frenzy over a critical vulnerability, then changed the severity to high. The correct solution to this whole problem is to stop using a TLS library written in C, we need to be using memory safe languages. Don't migrate from OpenSSL 1 to 3, migrate from OpenSSL 1 to Rustls. Show Notes OpenSSL Blog Post OpenSSL pre-announcement Mark Cox Tweet 3.0 only affected GossiTheDog NDA Tweet Claims of a name and logo Rustls Image Credit
NOW PLAYING
Episode 348 - OpenSSL is the new lead paint
No transcript for this episode yet
Similar Episodes
Mar 28, 2024 ·61m
Mar 21, 2024 ·59m
Mar 7, 2024 ·69m
Feb 29, 2024 ·84m