FreeBSD Security Advisory FreeBSD-SA-14:06.openssl

Karl Denninger karl at denninger.net
Wed Apr 9 14:26:06 UTC 2014


On 4/9/2014 9:21 AM, Zoran Kolic wrote:
> Advisory claims 10.0 only to be affected. Patches to
> branch 9 are not of importance on the same level?
>
>                              Zoran
>
9 (and before) were only impacted if you loaded the newer OpenSSL from 
ports.  A fair number of people did, however, as a means of preventing 
BEAST attack vectors.

If you did, then you need to update that and have all your private keys 
re-issued.  If you did not then you never had the buggy code in the 
first place.

-- 
-- Karl
karl at denninger.net


-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2711 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.freebsd.org/pipermail/freebsd-security/attachments/20140409/29a9014a/attachment.bin>


More information about the freebsd-security mailing list