[FreeBSD-Announce] FreeBSD Security Advisory FreeBSD-SA-14:09.openssl

Maxim Dounin mdounin at mdounin.ru
Wed Apr 30 13:55:20 UTC 2014


Hello!

On Tue, Apr 29, 2014 at 10:27:24PM -0700, Cstdenis wrote:

> Based on the CVE, it looks like older versions may also be vulnerable.
> http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-5298

Information on the link in question is misleading.  Affected 
code appeared in OpenSSL 1.0.0 and doesn't exists in previous 
versions, hence this problem only affects FreeBSD 10.x.

-- 
Maxim Dounin
http://nginx.org/


More information about the freebsd-security mailing list