OpenSSL 0.9.8x & 1.0.1c updates available for Apache 2.2.22 & 2.4.2

Started by Gregg, May 11, 2012, 10:08:52 AM

Previous topic - Next topic

Gregg

A flaw in the OpenSSL handling of CBC mode ciphersuites in TLS 1.1, 1.2 and
DTLS can be exploited in a denial of service attack on both clients and
servers. Affects all versions of OpenSSL prior to and including 1.0.1b, 1.0.0i & 0.9.8w

You can download these updates for our Apache 2.2.22 & 2.4.2 releases on our download page.