You can test if you are vulnerable here: http://filippo.io/Heartbleed/
On 04/08/2014 05:57 PM, Baptiste wrote:
Hi Lukas,
Thanks for sharing :)
Baptiste
On Tue, Apr 8, 2014 at 9:41 AM, Lukas Tribus <[email protected]> wrote:
Hi list,
anyone running openssl 1.0.1 is likely affected by the quite serious TLS
heartbeat read overrun bug (CVE-2014-0160) in OpenSSL:
https://www.openssl.org/news/secadv_20140407.txt
http://heartbleed.com/
Upgrading to 1.0.1g fixes this issue, 0.9.8 and 1.0.0 are unaffected.
Regards,
Lukas