Re: OpenSSL 0.9.7a seems to be vulnerable (was: Re: LKM Trojan)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



thomas.skybakmoen@xxxxxxxxx wrote:
May I ask why openssl 0.9.7a is used and not the latest, when looking at the rate of when packages are updated in Fedora this is close to the only one beeing held back..why?

Thomas

Thomas:

The version of OpenSSL is patched for the known problems with 0.9.7a. I agree that the current version # should be used when the test cycle is started and then the patch level increased. Also, a changelog would help greatly when determining if a CVE is addressed.

--
James McKenzie


[Index of Archives]     [Current Fedora Users]     [Fedora Desktop]     [Fedora SELinux]     [Yosemite News]     [Yosemite Photos]     [KDE Users]     [Fedora Tools]     [Fedora Docs]

  Powered by Linux