RE: OpenSSL Security Altert - Remote Buffer Overflows

2002-07-30 Thread Grant Walters
OpenSSL Security Advisory [30 July 2002] Does this affect Apache Web Servers? Regards Grant Walters Brainbench 'Most Valuable Professional' for Unix Admin Walters Associates, P O Box 13-043 Johnsonville, Wellington, NEW ZEALAND Telephone: +64 4 4765175, CellPhone 025488265, ICQ# 23511989

OpenSSL Security Altert - Remote Buffer Overflows

2002-07-30 Thread Ben Laurie
OpenSSL Security Advisory [30 July 2002] This advisory consists of two independent advisories, merged, and is an official OpenSSL advisory. Advisory 1 == A.L. Digital Ltd and The Bunker (http://www.thebunker.net/) are conducting a security review of OpenSSL, under the DARPA program

RE: OpenSSL Security Altert - Remote Buffer Overflows

2002-07-30 Thread Jeffrey Altman
OpenSSL Security Advisory [30 July 2002] Does this affect Apache Web Servers? If they are compiled with OpenSSL support then 'yes'. Jeffrey Altman * Sr.Software Designer Kermit 95 2.0 GUI available now!!! The Kermit Project @ Columbia University SSH, Secure Telnet, Secure FTP,

Re: OpenSSL Security Altert - Remote Buffer Overflows

2002-07-30 Thread Louis LeBlanc
On 07/30/02 11:08 AM, Ben Laurie sat at the `puter and typed: SNIP Apply the attached patch to OpenSSL 0.9.6d, or upgrade to OpenSSL 0.9.6e. Recompile all applications using OpenSSL to provide SSL or TLS. SNIP So when will 0.9.6e be available? The news page claims it's there, but

Re: OpenSSL Security Altert - Remote Buffer Overflows

2002-07-30 Thread Louis LeBlanc
On 07/30/02 09:05 AM, Louis LeBlanc sat at the `puter and typed: On 07/30/02 11:08 AM, Ben Laurie sat at the `puter and typed: SNIP Apply the attached patch to OpenSSL 0.9.6d, or upgrade to OpenSSL 0.9.6e. Recompile all applications using OpenSSL to provide SSL or TLS. SNIP