OpenSSL heads-up

Dragos Ruiu dr at kyx.net
Tue Sep 30 14:45:23 PDT 2003


On September 30, 2003 01:31 pm, Jacques A. Vidrine wrote:
>   Don't panic.  The vulnerability is denial-of-service.

On September 30, 2003 07:52 am, Chris Wysopal wrote on Vulnwatch:
> Three specific vulnerabilities have been discovered in the OpenSSL
> libraries. Two of these could allow a Denial of Service attack, the third
> may result in an attacker being able to execute malicious code under
> certain conditions.

Please clarify. Conflicting information.

thanks,
--dr

-- 
Top security experts.  Cutting edge tools, techniques and information.
Tokyo, Japan   November, 2003   http://www.pacsec.jp
pgpkey http://dragos.com/ kyxpgp


More information about the freebsd-security mailing list