Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 21 Mar 2003 10:47:26 +0100
From:      Roelf Schreurs <rosc@imc.nl>
To:        freebsd-security@FreeBSD.ORG
Subject:   Patch for OpenSSL and freebsd 4.4
Message-ID:  <3E7ADFAE.3000509@imc.nl>

next in thread | raw e-mail | index | archive | help
Hi

I was wondering if there will be a patch release for the 2 new OpenSSl 
vulnerabilities found this week?

"Researchers have discovered a timing attack on RSA keys to which
OpenSSL is vulnerable."
"Czech cryptologists Vlastimil Klima, Ondrej Pokorny, and Tomas Rosa
have come up with an extension of the "Bleichenbacher attack" on RSA
with PKCS #1 v1.5 padding as used in SSL 3.0 and TLS 1.0."

-- 
Roelf


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3E7ADFAE.3000509>