| MDVSA-2012:011: openssl |
|
|
|
| Écrit par Administrator |
| Lundi, 30 Janvier 2012 00:00 |
|
A vulnerability has been found and corrected in openssl:
OpenSSL 0.9.8s and 1.0.0f does not properly support DTLS applications, which allows remote attackers to cause a denial of service via unspecified vectors. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-4108 (CVE-2012-0050). The updated packages have been patched to correct this issue. The openssl0.9.8 packages for 2010.2 have been upgraded to the 0.9.8t version which is not vulnerable to this issue. |



























































