http://heartbleed.com/

Bryan Drewery bdrewery at FreeBSD.org
Tue Apr 8 02:41:29 UTC 2014


On 4/7/2014 3:49 PM, Thomas Steen Rasmussen wrote:
> Hello,
> 
> http://heartbleed.com/ describes an openssl vulnerability published
> today. We are going to need an advisory for the openssl in base in
> FreeBSD 10 and we are also going to need an updated port.
> 
> The implications of this vulnerability are pretty massive,
> certificates will need to be replaced and so on. I don't want to
> repeat the page, so go read that.
> 
> Best regards,
> 
> 
> /Thomas Steen Rasmussen
> 
> ps. there is a bit on the openssl site too:
> https://www.openssl.org/news/secadv_20140407.txt

The port has been updated. 1.0.1_10 has the fix.

-- 
Regards,
Bryan Drewery

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 553 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freebsd.org/pipermail/freebsd-security/attachments/20140407/07e15f81/attachment.sig>


More information about the freebsd-security mailing list