Cześć,
ja to tu zostawię: W: http://article.gmane.org/gmane.os.openbsd.misc/211963 T: http://www.tedunangst.com/flak/post/heartbleed-vs-mallocconf F: http://www.tedunangst.com/flak/post/analysis-of-openssl-freelist-reuse
Na zachętę:
No. OpenSSL has exploit mitigation countermeasures to make sure it's exploitable.