Verified75% confidenceFactTime unknown
2014年的Heartbleed漏洞是OpenSSL加密库中存在了两年多的严重漏洞,影响了全球约17%的安全Web服务器
3
Sources
75%
Confidence
Long-term
Relevance
6/1/2026
First Seen
Sources
Related Entities
Related Claims
Verified2014年的Heartbleed漏洞揭示了OpenSSL这样被全球互联网依赖的项目仅由两名兼职维护者支撑83% similarUnverified2014年的OpenSSL Heartbleed漏洞因边界检查缺失导致内存越界读取,攻击者可借此窃取服务器内存中的私钥和用户数据81% similarUnverifiedHeartbleed漏洞在OpenSSL代码库中潜伏约两年,glibc的GHOST漏洞(CVE-2015-0235)潜伏约14年79% similarUnverified2014年的Heartbleed漏洞(CVE-2014-0160)源于OpenSSL的TLS心跳扩展实现中的缓冲区过读错误,攻击者可每次读取服务器内存中最多64KB的数据75% similarUnverifiedHeartbleed漏洞在OpenSSL代码中存在了超过两年才被发现,直接催生了Core Infrastructure Initiative(CII,后演变为OpenSSF)的成立73% similar
Cite This Claim
Stable URI
https://kongchang.com/claim/19879API
curl https://kongchang.com/api/v1/knowledge/claims/19879MCP
get_claim(id=19879)