Charles Heselton said: [snip] > But I'd like to update the package to fix the security hole. What security hole? Please provide specifics (for example a CVE number). A quick look at cve.mitre.org only shows one open canidate for OpenSSL, CAN-2004-0607 (which hasn't been fixed by OpenSSL yet). Besides that, they have all been fixed since March. If you are just using version numbers to make a comparison, you really should read http://www.redhat.com/advice/speaks_backport.html -- William Hooper